Appointment Scheduler V2.0 - Multiple Vulnerabilties ========================================================================= #################################################################### .:. Author : HackXBack .:. Contact : h-b@usa.com .:. Home : http://www.iphobos.com/blog/ .:. Script : http://www.phpjabbers.com/appointment-scheduler/ .:. Tested On Demo : http://www.phpjabbers.com/demo/1389471646_885/index.php?controller=pjAdmin&action=pjActionLogin #################################################################### ===[ Exploit ]=== [1] Cross Site Scripting ========================= # CSRF with XSS Exploit:
[2] Cross Site Request Forgery =============================== [Add Admin]