Webboard: Reflective XSS

[email protected]
Newsgroups gmane.comp.web.mnogosearch.general
Message-ID <[email protected]>
Author: Paul
Email: [email protected]
Message:
I am using 3.3.8 and am able to get the search server to dish up this XSS attack?  I am not 

able to get around it, is there a solution I am missing?



http://yourserver.com/cgi-bin/search.cgi?

mode=sp1596f6%22%3E%3Cscript%3Ealert%28123%29%3C/script%3E8c072219dcf&btnSubmi

t=Go



I am not using my server name here, I don't want to take the risk of listing a vulnerable 

server.



I would appreciate any help.



Reply: <http://www.mnogosearch.org/board/message.php?id=20991>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.