View Single Post
Old 04-23-2007   #2
Jean
Administrator
 
Jean's Avatar
 
Last Online: 04-16-2018
Join Date: Dec 2005
Posts: 5,085
Thanks: 250
Thanked 3,555 Times in 2,245 Posts
Groans: 3
Groaned at 12 Times in 7 Posts
Default Re: XSS In All The Versions Of Vbulletin

Quote:
Originally Posted by HizbullaH
I Was Checking The Latest Exploits.
And I Found An Exploit For All The Versions Of Vbulletin!
The Exploit Is Somehow Complicated, But It Will Allow You Steal Cookies Through XSS.
Its Idea Is To Inject Somethings To A Spacer PNG Image Using The Perl Programming Language And Then Uploading It To The Site (Avatar For Example), Then Injecting The Evil Codes.
I Didn't Apply This Exploit And I Didn't Read It All Because Of The Small Free Time.
But I Think Vcoderz And Other Sites Were Hacked In This Way!

~!~ We Are HizbullaH Rockets On The Net ~!~
clarification : vcoderz.com wasn't hacked , there was an attack against the forum, but they didn't succeed in any thing.
Jean is offline   Reply With Quote