AOH :: HP Unsorted M :: BX1248.HTM

milliscripts (dir.php) Cross-Site Scripting Vulnerability



milliscripts (dir.php) Cross-Site Scripting Vulnerability
milliscripts (dir.php) Cross-Site Scripting Vulnerability



# milliscripts (dir.php) Cross-Site Scripting Vulnerability=0D
# Download:=0D
# http://www.milliscripts.com/=0D 
# Bug found by Jose Luis G=F3ngora Fern=E1ndez / JosS=0D
# Contact: sys-project[at]hotmail.com=0D
# Spanish Hackers Team=0D
# www.spanish-hackers.com=0D 
# /server irc.freenode.net /join #fullsecure=0D
# d0rk: "powered by milliscripts"=0D
# Stop lammer=0D
=0D
[*] Exploit In (XSS):=0D
=0D
../PATH/dir.php?do=browse&cat=[XSS]=0D
http://www.example.com/PATH/dir.php?do=browse&cat=[XSS]=0D 
=0D
[*] Cross Siting Scripting (Code):=0D
=0D
">=0D
=0D
=0D
 //---------------------------------------\\=0D
=0D
Greetz To: All Hackers=0D
Jose Luis G=F3ngora Fern=E1ndez / JosS!

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.