| New User, Welcome! Login |
Bractus SunTrack Multiple XSS
| From: |
Bugs NotHugs <bugsnothugs gmail com> |
| To: |
bugtraq <bugtraq securityfocus com>, fd <full-disclosure lists grok org uk> |
| Cc: |
|
| Subject: |
Bractus SunTrack Multiple XSS |
| Date: |
Tue - Nov 03, 2009 04:11 PM |
Vendor: Bractus (http://bract.us)
Product: SunTrack (http://bract.us/demo/login.jsp)
Multiple stored XSS vulnerabilities exist in the Bractus SunTrack
courier software suite.
Affected scripts:
newprofile.html (title parameter)
signup/signup.html (firstname, lastname, company parameter)
contact.html (firstname, lastname, address[0].street1 parameter)
--
BugsNotHugs
Shared Vulnerability Disclosure Account
|
|
|
Copyright © 1995-2012 LinuxRocket.net. All rights reserved.
Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!