exploit-db-mirror/platforms/php/webapps/28510.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

9 lines
No EOL
504 B
Text
Executable file

source: http://www.securityfocus.com/bid/19957/info
PHProg is prone to multiple vulnerabilities. The issues result from insufficient sanitization of user-supplied data and may allow an attacker to carry out cross-site scripting and local file-include attacks.
Version 1.0 of PHProg is reported vulnerable; other versions may be affected as well.
NOTE: This BID is being retired because it is a duplicate of BID 19942.
http://www.example.com/PHProg/?id=1&album=<script>alert('input')</script>