WebVision version 2.1 suffers from a cross site scripting vulnerability.
b7434fe72f0f66f50aa37b5c368dd3c7/*
WebVision 2.1 (XSS) Script Injection Vulnerability
Discovered by : MizoZ
Contact : mizozx@gmail.com
Date : July 29 2009
Greetings : Moudi , Zuka, All friends
*/
Vulnerability :
We can inject HTML Scripts from "Sign Guestbook"
[HOST]/[PATH]/index.php?mod=guest_form , all input are vulnerable .
Comments
No comments yet, be the first!