Description
|
|
Several vulnerabilities were identified in BibORB, which may be exploited by attackers to execute arbitrary HTML/Javascript codes, upload arbitrary files, or bypass certain seurity features.
http://vulnerable/bibindex.php?mode=displaysearch&search=<XSS>&sort=ID
http://vulnerable/index.php?mode=result&database_name=../config.php&action=Delete
|