This is a technical writeup detailing a Cross-Site Scripting (XSS) vulnerability in SourceBans 1.4.7. It provides specific examples of malicious input that can trigger the XSS via the 'BanIP', 'Comments', 'Name', and 'Email' fields.
Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target:SourceBans 1.4.7
No auth needed
Prerequisites:Access to the vulnerable SourceBans web interface