Bugtraq mailing list archives

PhotoStore Multiple Cross-Site Scripting Vulnerabilities


From: meto5757 () hotmail com
Date: 23 Sep 2006 21:45:56 -0000

#################################################
PhotoStore Multiple Cross-Site Scripting Vulnerabilities
-------------------------------------------------
site : http://www.ktools.net/photostore/
-------------------------------------------------
Exploiting these issues could allow an attacker to steal cookie-based authentication credentials and to launch other 
attacks.
-------------------------------------------------
Exploite :
----------
http://www.example.net/[path]/details.php?gid=[xss]
http://www.example.net/[path]/view_photog.php?photogid=[xss]
--------------------------------------------------
Discoverd by :
meto5757 of rootshell security group
--------------------------------------------------
greets :
Ironfist , sverde1 , Dr.Viru$ , craziest (miss u!)
& all my friends :)
--------------------------------------------------


Current thread: