[27216] in bugtraq
Re: Yet another XSS vulnerability in PHP NUKE
daemon@ATHENA.MIT.EDU (Muhammad Faisal Rauf Danka)
Sat Sep 28 15:36:09 2002
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0
Date: Sat, 28 Sep 2002 05:20:57 -0700 (PDT)
From: Muhammad Faisal Rauf Danka <mfrd@attitudex.com>
To: bugtraq@securityfocus.com
Reply-To: mfrd@attitudex.com
Message-Id: <20020928122057.C01943AC5@sitemail.everyone.net>
This XSS issue with the search field has already been discovered and published by Mark Grimes.
see the link:
http://www.der-keiler.de/Mailing-Lists/securityfocus/bugtraq/2002-09/0289.html
Regards
--------
Muhammad Faisal Rauf Danka
Head of GemSEC / Chief Technology Officer
Gem Internet Services (Pvt) Ltd.
web: www.gem.net.pk
Key Id: 0x784B0202
Key Fingerprint: 6F8C EDCF 6C6E 06A5 48D7 6A20 C592 484B
784B 0202
_____________________________________________________________
---------------------------
[ATTITUDEX.COM]
http://www.attitudex.com/
---------------------------
_____________________________________________________________
Select your own custom email address for FREE! Get you@yourchoice.com w/No Ads, 6MB, POP & more! http://www.everyone.net/selectmail?campaign=tag