View Single Post
Old 04-23-2007   #1
HizbullaH
Registered Member
 
HizbullaH's Avatar
 
Last Online: 09-06-2011
Join Date: Oct 2006
Posts: 397
Thanks: 262
Thanked 215 Times in 87 Posts
Groans: 0
Groaned at 0 Times in 0 Posts
Default XSS In All The Versions Of Vbulletin

I Was Checking The Latest Exploits.
And I Found An Exploit For All The Versions Of Vbulletin!
The Exploit Is Somehow Complicated, But It Will Allow You Steal Cookies Through XSS.
Its Idea Is To Inject Somethings To A Spacer PNG Image Using The Perl Programming Language And Then Uploading It To The Site (Avatar For Example), Then Injecting The Evil Codes.
I Didn't Apply This Exploit And I Didn't Read It All Because Of The Small Free Time.
But I Think Vcoderz And Other Sites Were Hacked In This Way!

~!~ We Are HizbullaH Rockets On The Net ~!~
__________________
من؟ من سينزع سلاح حزب الله!؟
HizbullaH is offline   Reply With Quote