Re: [FD] SQLiteManager 1.2.4: Multiple XSS

2015-11-10 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Tue, Nov 03, 2015 at 12:06:20PM +0100, Curesec Research Team (CRT) wrote: > SQLiteManager 1.2.4: Multiple XSS > http://localhost/SQLiteManager-1.2.4/main.php?dbsel=2&function=";>alert(1) > http://localhost/SQLiteManager-1.2.4/main.php?dbsel=2&table=

[FD] SQLiteManager 1.2.4: Multiple XSS

2015-11-06 Thread Curesec Research Team (CRT)
SQLiteManager 1.2.4: Multiple XSS Security Advisory – Curesec Research Team 1. Introduction Affected Product: SQLiteManager 1.2.4 Fixed in: not fixed Fixed Version Link: n/a Vendor Contact: sqlitemana...@gmail.com Vulnerability Type: XSS Remote Exploita