TUCoPS :: Web :: PHP :: tb12514.htm

php-stats -tracking.php XSS
new XSS vulnerability in php-stats -tracking.php
new XSS vulnerability in php-stats -tracking.php



I found a new xss in php-stats 0.1.9.2

http://phpstats.net/ 

http://www.example.com/php-stats-path/tracking.php?what=online&ip=[XSS] 

Stats must have public access for this (difference from whois.php XSS).


TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH