Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: [Aria-Security] Stuffed Tracker Multiple Cross-Site Scripting VULN

[Aria-Security] Stuffed Tracker Multiple Cross-Site Scripting VULN

From: Advisory_at_Aria-Security.Net, <Advisory_at_Aria-Security.Net>
Date: 5 Oct 2007 22:05:29 -0000
('binary' encoding is not supported, stored as-is) Aria-Security Team
----------------------
Viart Shopping Cart Directory Transversal Vuln

Vendor:
http://www.viart.com/

POC:

    function createCertFingerprint($filename) {
        $fp = fopen($filename, "r");

http://target/path/payments/ideal_process.php

Credits Goes To Aria-Security Team
Thanks To Aura
Regards,
The-0utl4w

http://Aria-Security.Net [Aria-Security's Website]
Received on Oct 06 2007

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos