Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Tikiwiki 1.9.7 HTML/embed object injection

From: <morin.josh(at)gmail.com>
Date: Fri Aug 24 2007 - 02:57:59 EDT


Tikiwiki
Version: 1.9.7

Example Address
http://example.com/tiki-remind_password.php

Overview:
The following codes can be added to the HTML password page by placing the HTML codes in the user name input box and hitting the "send me my password" button.

Examples:

1.

XSS 2.http://site.com/xss.swf" 3.Pwned
Received on Fri Aug 24 14:19:48 2007

This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:13:23 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library