Olate Download 3.4.2~modules/core/uim.php~XSS
Posted by imei on August 22nd, 2007——————-Summary—————-
Software: Olate Download
Sowtware’s Web Site: http://www.olate.co.uk/
Versions: 3.4.2
Class: Remote
Status: Patched
Exploit: Available
Solution: Not Available
Discovered by: imei addmimistrator
Risk Level: Middel
—————–Description—————
Olate download is prone to Cross site scripting, cause of trusting to unsafe variable, $_SERVER[’PHP_SELF’].
Read the rest of this entry »