Exploit PHP Stock Management System 1.02 - Multiple Persistent Cross-Site Scripting Vulnerabilities

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
34405
Проверка EDB
  1. Пройдено
Автор
RAGHA DEEPTHI K R
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
null
Дата публикации
2014-08-25
PHP Stock Management System 1.02 - Multiple Persistent Cross-Site Scripting Vulnerabilities
Код:
# Exploit Title: Multiple Persistent Cross Site Scripting Vulnerabilities
in PHP Stock Management System 1.02
# Date: 25 Aug 2014
# Exploit Author: Ragha Deepthi K R
# Vendor Homepage: http://www.posnic.com/
# Software Link: http://sourceforge.net/projects/stockmanagement/
# Version: 1.02
# Tested on: Windows 7

#################################################
PHP Stock Management System 1.02 is vulnerable for multiple Persistent
Cross Site Scripting Vulnerabilities.
The vulnerability affects 'sname'(Store Name Field), 'address'(Address
Field), 'place'(Place Field), 'city'(City Field), pin(Pin Field),
website(Website Field), email(Email Field) parameters while updating the
store details in 'update_details.php' and when seen in 'view_report.php'

#################################################
Greetz : Syam !
 
Источник
www.exploit-db.com

Похожие темы