AOH :: Web :: Guestbooks :: B06-2845.HTM

phazizGuestbook v2.0 - XSS

phazizGuestbook v2.0 - XSS
phazizGuestbook v2.0 - XSS



phazizGuestbook v2.0=0D
=0D
=0D
Homepage:=0D
http://www.devhome.de/#english_version=0D 
=0D
Effected files:=0D
input boxes of name, email, url, text.=0D
=0D
XSS Vulnerability:=0D
None of these input boxes sanatize user input before generating it. for PoC put  in any of the above boxes. =0D

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2009 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.