Webboard: Reflective XSS
| Newsgroups | gmane.comp.web.mnogosearch.general |
|---|---|
| Message-ID | <[email protected]> |
Author: Paul Email: [email protected] Message: I am using 3.3.8 and am able to get the search server to dish up this XSS attack? I am not able to get around it, is there a solution I am missing? http://yourserver.com/cgi-bin/search.cgi? mode=sp1596f6%22%3E%3Cscript%3Ealert%28123%29%3C/script%3E8c072219dcf&btnSubmi t=Go I am not using my server name here, I don't want to take the risk of listing a vulnerable server. I would appreciate any help. Reply: <http://www.mnogosearch.org/board/message.php?id=20991>