[VIM] Interlink "news_information.php" XSS (fwd)
security curmudgeon
jericho at attrition.org
Thu Jun 1 05:37:35 EDT 2006
Found a site running this script with the same two variables. At the
bottom, it links to the vendor as "Interlink Advantage":
http://www.interlinkadvantage.com/
---------- Forwarded message ----------
From: Mster-X at hotmail.com
To: bugtraq at securityfocus.com
Date: 20 May 2006 08:09:23 -0000
Subject: Interlink "news_information.php" XSS
==========================
Discovery By: Mr-X
Site: www.alshmokh.com
E-mail: Mster-X at hotmail.com
==========================
Example:
/news_information.php?id=12&flag=[XSS]
More information about the VIM
mailing list