AOH :: HP Unsorted E :: BX3797.HTM

Easybookmarker 40tr Xss Vulnerability By Khashayar Fereidani



Easybookmarker 40tr Xss Vulnerability By Khashayar Fereidani
Easybookmarker 40tr Xss Vulnerability By Khashayar Fereidani



----------------------------------------------------------------

Script : Easybookmarker 40tr

Type : Xss Vulnerability

Method : POST

Alert : High

----------------------------------------------------------------

Discovered by : Khashayar Fereidani a.k.a. Dr.Crash

My Offical Website : HTTP://FEREIDANI.IR 

Khashayar Fereidani Email : irancrash [ a t ] gmail [ d o t] com

----------------------------------------------------------------

Khashayar Fereidani Offical Website : HTTP://FEREIDANI.IR 

----------------------------------------------------------------

Script Download : http://myiosoft.com/download/EasyBookMarker/easybookmarker-40tr.zip 

----------------------------------------------------------------
Xss Vulnerability :

Variable : rs
Send Method : POST

Set rs variable with post method in ajaxp_backend.php :  for test vulnerability





action="http://example/zomplog/ajaxp_backend.php" method="POST" name="form">
---------------------------------------------------------------- Tnx : God HTTP://IRCRASH.COM ----------------------------------------------------------------

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.