cross site scripting htmltonuke

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




I find a bug in some versions of htmltonuke.

servers with php-nuke installed are not vulnerables

some versions of htmltonuke only have permisions to acces to html files, 
but if you tipe the script before a invalid html file, the script are 
executed.

exploit:

http://www.example.com/htmltonuke.php?filnavn=[SCRIPT]%20example.html


[Index of Archives]     [Linux Security]     [Netfilter]     [PHP]     [Yosemite News]     [Linux Kernel]

  Powered by Linux