[pLog-svn] Fwd: XSS in referrer

Jon Daley jon at limedaley.com
Thu Jan 13 07:42:34 EST 2011


 	I'm not sure what they mean when they say "the vendor was 
notified".  I suppose that means that we were notified when they published 
it on this web page?  Not exactly what anyone should consider "notified".


LifeType 1.2.10 HTTP Referer stored XSS
Exploit Title: lifetype 1.2.10 http referer XSS # Date: 11-1-2010 # Author:
Saif El-Sherei # Software Link: http://lifetype.net/page/downloads #
Version: ...
<http://www.exploit-db.com/exploits/15981/>


More information about the pLog-svn mailing list