Full Disclosure mailing list archives
Sun java System Messenger Express XSS
From: "handrix cobra" <handrix () gmail com>
Date: Tue, 31 Oct 2006 05:20:11 +0100
Sun java System Messenger Express remote XSS vulnerabilities By: Handrix <handrix_at_morx_org> 29 November 2006 MorX security research team www.morx.org Description: Sun java System Messenger Express XSS The index script is vulnerable to XSS attacks, in functiion errorHTML . function errorHTML() { var s='' . . . document.write(s) ---> Need more case filetring the 's' var } So, this issue can allow an attacker to bypass content filters and potentially carry out cross-site scripting, HTML injection and other attacks. Exploit: https://mail.victime.edu/?user=&error=%3Cscript%3Ealert('hakin9');%3C/script%3E Founded with Google by this dorks : intitle:"Sun Java(tm) System Messenger Express" Vulnerable versions : Sun java System Messenger Express Sun java System Messenger Express6
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Sun java System Messenger Express XSS handrix cobra (Oct 30)