MaviPortal suffers from a cross site scripting flaw in credits.php.
25b9bac751e54ce92a77856e9da4154da07ab6c109d4519bd4c9494d7568b6d7
# Bhhgroup.org & Trtekforum.com
# script name : MaviPortal (tr)
# Version : All
#script Download: http://www.docebo.org/doceboCms/index.php?mn=docs&op=download&pi=5_4&id=44
# script sites : http://www.docebo.org
# Risk : High
# Found By : St@rExT
# Vulnerable file : arama.asp
#Xss Vuln:
http://www.target/[scriptoath]//modules/credits/credits.php?lang==[xssCode]
# Thanks : Dekolax , ShaFuck31 , ST@ReXT , Dekolax , Swat_Hack , Maverick , Candark , Torlaq , Woheras , Siruas,TurkAkrep
# E-mail: Starext[at]msn[dot]com
##Herkesin Kurban Bayramı Mübarek olsun : ) ###
##################### -- Ne Mutlu Türküm Diyene !!! -- ####################