Bugtraq mailing list archives

Weblog Oggi v1.0


From: luny () youfucktard com
Date: 2 Jun 2006 02:40:59 -0000

Weblog Oggi v1.0

Homepage:
http://www.hotwebscripts.com/index.php

User input isn't sanatized before being dynamically generated. For proof of concept just put <IMG 
SRC="javascript:alert('XSS');"> in as a comment


Current thread: