Advisory: hacker.org - Cross-site Scripting vulnerability Advisory ID: SSCHADV2011-043 Author: Stefan Schurtz Affected Software: Successfully tested on hacker.org Vendor URL: http://hacker.org Vendor Status: informed ========================== Vulnerability Description ========================== hacker.org is prone to a XSS vulnerability ================== PoC-Exploit ================== // XSS http://www.hacker.org/worm/index.php?botname='" ========= Solution ========= - ==================== Disclosure Timeline ==================== 11-Nov-2011 - vendor informed (adam@adum.com) 14-Jan-2012 - no response ======== Credits ======== Vulnerabilities found and advisory written by Stefan Schurtz. =========== References =========== http://www.darksecurity.de/advisories/SSCHADV2011-043.txt