Edit Report

Our sensors found this exploit at:

Below is a copy:

# Affected software: 4images
# Type of vulnerability: clickjacking,xss
# URL:
# Discovered by: Provensec
# Website:
# Description: 4images is a powerful web-based image gallery management
system. Features include comment system, user registration and mangagement,
password protected administration area with browser-based upload and HTML
templates for page layout and design.
# Proof of concept

1st:click jacking --:

4images was vuln to clickjacking which could be exploited and used to
delete category

clickjacking poc -:

2nd:  xss

adding a new category with xss payload leads to persistent xss vuln


Best Regards,
*Ankit Bharathan.*

*Save Energy... Save Nature... Go Green...*
P *Consider the environment. Please don't print this e-mail unless
absolutely necessary.*

Copyright ©2022 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.