chatujeme.cz XSS

BugTrack

chatujeme.cz XSS#
Alert !!

Cross Site Scripting was found at: "[link]", using HTTP method GET. The sent data was: "rid=<ScRIPT>a=/z9Q0/%0Aalert(a.sourc
e)</SCRiPT>&sekce=9". The modified parameter was "rid". This vulnerability affects ALL browsers. This vulnerability was found in the request with id 441.


[link]

+
The following scripts are vulnerable to a trivial form of XSRF:
[link]
(odpovědět)
sroub3k | E-mail13.7.2011 2:41
re: chatujeme.cz XSS#
MySQL hlásí chybu: Access denied for user 'chatujme.cz'@'localhost' to database 'jirpet_cz3'
(odpovědět)
sroub3k | E-mail13.7.2011 3:18

Zpět
 
 
 

 
BBCode