34 lines
No EOL
1.1 KiB
Text
34 lines
No EOL
1.1 KiB
Text
[:::::::::::::::::::::::::::::::::::::: 0x1 ::::::::::::::::::::::::::::::::::::::]
|
|
>> General Information
|
|
Advisory/Exploit Title = Joke Website Script SQL Injection and Cross-Site Scripting Vulnerabilities
|
|
Author = Valentin Hoebel
|
|
Contact = valentin@xenuser.org
|
|
|
|
|
|
[:::::::::::::::::::::::::::::::::::::: 0x2 ::::::::::::::::::::::::::::::::::::::]
|
|
>> Product information
|
|
Name = Joke Website Script
|
|
Author = Ed Pudol
|
|
Link = http://www.buymyscripts.net/8/Joke_website_script_with_a_20_thousand+_jokes_database_included.html
|
|
Affected Version(s) = unknown
|
|
|
|
|
|
[:::::::::::::::::::::::::::::::::::::: 0x3 ::::::::::::::::::::::::::::::::::::::]
|
|
>> #1 SQL Injection
|
|
target/search.php?submit=Search&keyword=[SQLi]
|
|
|
|
>> #2 Cross-Site Scripting
|
|
target/search.php?submit=Search&keyword=[XSS]
|
|
|
|
[:::::::::::::::::::::::::::::::::::::: 0x4 ::::::::::::::::::::::::::::::::::::::]
|
|
>> Additional Information
|
|
Advisory/Exploit Published = 14.06.2010
|
|
|
|
|
|
[:::::::::::::::::::::::::::::::::::::: 0x5 ::::::::::::::::::::::::::::::::::::::]
|
|
>> Misc
|
|
Greetz = cr4wl3r, JosS
|
|
<3 packetstormsecurity.org!
|
|
|
|
|
|
[:::::::::::::::::::::::::::::::::::::: EOF ::::::::::::::::::::::::::::::::::::::] |