This script in asp permettedi executing of the commandos taking advantage of a bug of the XSSper greater info you can see the video:
and the shell:
passwd:
Code:
SecurityTeam

XSS Shell Install Video

7 minutes video shows how can you installation and configuration of xssshell-xsstunnell

Code:
For further details and idea refer to the white paper  XSS  Tunnelling. It may can take about 60 seconds to load.

http://ferruh.mavituna.com/blogs/XSS...stallation.swf

Explore More

Critical SQL Injection in All About Myanmar

PlanetCreator reported another Critical SQL injection (vulnerability) on All About Myanmar (Beta) URL : http://www.allaboutmyanmar.com/ SQL injection is a code injection technique that exploits a security vulnerability occurring in the

Clickjacking technique called “content extraction”

Cookiejacking is a UI redressing attack that allows an attacker to hijack his victim’s cookies without any XSS. Clickjacking attacks have been widely adopted by attackers worldwide on popular websites

China’s ‘Green Dam-Youth Escort’ Software

Green Dam Youth Escort is the censor ware developed and distributed by Chinese government to filter ‘harmful’ content. Here are some details about the working of the software. ‘Green Dam-Youth