Date: 28 Jun 2006 18:14:42 -0000
From: [email protected]
To: [email protected]Subject: PHP iCalendar Cross Site Scripting
X-Virus-Scanned: antivirus-gw at tyumen.ru
>> K.S Advisory
>> irc.gigachat.net #kurdhack
>> Thanx : Netqurd,Azad,B3g0k,Fearless,Milex,Flot,Zay_Boy,PH,KHA,KCA and other my friends
>> Version : All Version
Proof Of Concept :
http://www.site.com/phpicalendar/rss/index.php?cal=[XSS]
Original Advisory :
http://kurdishsecurity.blogspot.com/2006/06/kurdish-security-12-php-icalendar.html
EoF