Sunday, December 12, 2010

WorldCat search library vulnerable to Cross Site Scripting

# Exploit Title: WorldCat search library vulnerable to Cross Site Scripting
# Date: 12 December 2010
# Author: p0pc0rn
# Vendor: http://www.worldcat.org/



XSS
====
http://site/search?q=kw:[XSS]

Screenshot
===========

http://img842.imageshack.us/img842/6059/worldcatorg.jpg

Status
======
Reported

Thanks

p0pc0rn
Share:

0 comments: