http://www.tourism-solutions.tech is usually sending spam emails.
There's a fake unsubscribe script that reports the removal of anything, even if you add a simple xss.
http://www.tourism-solutions.tech/unscribe.php?id=%3Cscript%3Ealert('xss');%3C/script%3Eyourmail.com
____
The mail server can be exploited with an old remote exploit for postfix on debian linux. (shellshock)
There's a fake unsubscribe script that reports the removal of anything, even if you add a simple xss.
http://www.tourism-solutions.tech/unscribe.php?id=%3Cscript%3Ealert('xss');%3C/script%3Eyourmail.com
____
The mail server can be exploited with an old remote exploit for postfix on debian linux. (shellshock)
Comments
Post a Comment