miercuri, 8 februarie 2012

CLiki Cross Site Scripting

# Exploit Title: CLiki Cross Site Scripting
# Date: 8.02.2012
# Author: Sony

# Software Link: http://www.cliki.net
# Web Browser : Mozilla Firefox
# Blog : http://st2tea.blogspot.com
# PoC:
http://st2tea.blogspot.com/2012/02/cliki-cross-site-scripting.html
..................................................................

http://en.wikipedia.org/wiki/CLiki

Simple persistent xss.

Create New Page and put xss code and save this.

And you can see xss on the page.

Also we can see our xss on the "Recent Changes" Page.


http://www.cliki.net/Recent%20Changes

0 comentarii:

Trimiteți un comentariu

Rețineți: Numai membrii acestui blog pot posta comentarii.