------------------------------------------------------ Nightmare TeAmZ Advisory 015 ------------------------------------------------------ Date - 11/2005 EasyPageCMS Cross Site Scripting AFFECTED PRODUCTS ================= EasyPageCMS http://www.davehusk.com Xss Poof: ======== poof: www.[host].com/[path]/index.php?cat= Solution: ========= 1. Venditor Not Contacted Credits ======= This vulnerability was discovered and researched by BiPi_HaCk of Nightmare TeAmZ We're: BiPi_HaCk - r3d_4Ss4ult3r - Sub_Z3r0 Site: http://www.NightmareSecurity.net <--IT Security Forum _________________________________________________________________ 250MB per la tua casella di posta http://www.msn.it/hotmail/minisite_10 Trova immediatamente qualsiasi tipo di file.