[VIM] Interlink "news_information.php" XSS (fwd)

security curmudgeon jericho at attrition.org
Thu Jun 1 05:37:35 EDT 2006


Found a site running this script with the same two variables. At the 
bottom, it links to the vendor as "Interlink Advantage":
http://www.interlinkadvantage.com/

---------- Forwarded message ----------
From: Mster-X at hotmail.com
To: bugtraq at securityfocus.com
Date: 20 May 2006 08:09:23 -0000
Subject: Interlink "news_information.php" XSS

==========================
Discovery By: Mr-X
Site: www.alshmokh.com
E-mail: Mster-X at hotmail.com
==========================

Example:
/news_information.php?id=12&flag=[XSS]


More information about the VIM mailing list