Bugtraq mailing list archives
DSChat <= 1.0 XSS
From: zerogue () gmail com
Date: 22 May 2006 19:07:26 -0000
DSChat <= 1.0 XSS Discovered by: Nomenumbra Date: 21/5/2006 impact:moderate (possible defacement) DSChat is a PHP-based chatscript which does no filtering against XSS whatsoever, thus allowing anyone to insert html or javascript in the chatbox. Nomenumbra
Current thread:
- DSChat <= 1.0 XSS zerogue (May 23)