myBloggie 2.1.1
Date: 15 Apr 2005 14:11:30 -0000
From: Francisco Alisson <dominusvis@click21.com.br.>
To: [email protected]
Subject: myBloggie 2.1.1
X-Virus-Scanned: antivirus-gw at tyumen.ru
############################################
#
# myBloggie 2.1.1
# Vendor: http://www.mywebland.com/
#
############################################
When the comments are posted there's no check for "<script>" tags allowing a script injection attack.
Proof of Concept
<script>alert("Hi world!");</script>
..-= Dominus_Vis =-..
[Infektion Group]
Brazil