sâmbătă, 3 septembrie 2011

Bitrix Cross Site Scripting

# Exploit Title: Bitrix Cross Site Scripting
# Date: 3.08.2011
# Author: Sony
# Software Link: http://www.1c-bitrix.ru/
# POC: http://st2tea.blogspot.com/2011/09/bitrix-cross-site-scripting.html

..................................................................

[templates:gameshowroom]

Demo:

http://partner.alawar.pl

Rejestracja:

http://partner.alawar.pl/signup.php

Opcje:

http://partner.alawar.pl/vitr/config/

Put our code in the Imię or Telefon and save..

Our code:

http://codepad.org/UAjoOyaL

Demo Video:

0 comentarii:

Trimiteți un comentariu

Rețineți: Numai membrii acestui blog pot posta comentarii.