icq-xss.txt...

- AV AC AU C I A
发布: 2006-01-25
修订: 2025-04-13

An ICQ.com search script (search_result.php) is vulnerable to cross-site scripting attacks. An attacker can exploit the vulnerable script to have arbitrary script code executed in the browser of an authenticated ICQ user in the context of the ICQ webpage. resulting in the theft of cookie-based authentication giving the attacker temporary access to the victim's account, as well as other type of attacks.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息