Tested on Webmin 1.390
- From: no-reply@xxxxxxxxxxxxxxxxx
- Date: 6 Feb 2008 05:18:01 -0000
Aria-Security Team (Persian Security Network)
http://Aria-Security.Net
----------------------------------
Tested on Webmin 1.390 Cross Site Scripting
This vuln was tested on Webmin as an administrator account (root)
and it has worked on the search section (file) of the system.
Value Inserted:
"><script>alert('Discovered By Aria-Security')</script>
Regards,
Aria-Security Team (Persian Security Network)
The-0utl4w
Credits Goes to Aria-Security Team
----------------------------------
for more info visit:
http://forum.aria-security.net/forumdisplay.php?f=60
- Prev by Date: A paper by Amit Klein (Trusteer): "OpenBSD DNS Cache Poisoning and Multiple O/S Predictable IP ID Vulnerability"
- Next by Date: [SECURITY] [DSA 1482-1] New squid packages fix denial of service
- Previous by thread: A paper by Amit Klein (Trusteer): "OpenBSD DNS Cache Poisoning and Multiple O/S Predictable IP ID Vulnerability"
- Next by thread: Re: Tested on Webmin 1.390
- Index(es):