The web management interface of SmoothWall Express 3.0 is vulnerable
to xss and csrf.
xss example:
SmoothWall Express 3.0 xss
csrf example:
SmoothWall Express 3.0 csrf
--
Something's rotten in the state of Denmark. -- Shakespeare
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/