#Aria-Security Team Advisory # # #Original Advisory : http://aria-security.net/advisory/i-Gallery34.txt #----------------------------------------------------------- #Software: i-Gallery 3.4 #Method : Cross Site Scripting # #PoC: #http://target/path/igallery.asp?n=[XSS] #http://target/path/igallery.asp&d=[XSS] #and also XSS method is possible while inserting XSS in search. # #Contact: Advisory@aria-security.net