[prev in list] [next in list] [prev in thread] [next in thread] 

List:       bugtraq
Subject:    EnanoCMS 1.1.8pl1 XSS Vulnerability
From:       dennis.veninga () gmail ! com
Date:       2015-02-25 15:30:13
Message-ID: 201502251530.t1PFUDm3014913 () sf01web1 ! securityfocus ! com
[Download RAW message or body]

# Exploit Title: EnanoCMS 1.1.8pl1 XSS Vulnerability
# Google Dork: "Website engine powered by Enano"
# Date: 24-2-2015
# Exploit Author: Dennis Veninga
# Vendor Homepage: http://enanocms.org
# Version: 1.1.8pl1
# Tested on: Firefox 36 & Chrome 38 / W8.1-x64

XSS Vulnerability in comments:
http://{target}/enanocms/index.php/Main_Page?do=comments
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic