|
|
|
|
Menu |
|
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| | |
|
|
|
|
|
User Info |
|
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144
People Online:
Visitors: 151
Members: 0
Total: 151
|
|
|
|
|
|
Full disclosure |
|
|
|
|
|
|
IT Security and Insecurity Portal |
|
|
Need HeLp :) Problem fixed :D |
|
Posted: Mon Apr 20, 2009 4:44 pm |
|
|
TUPKO |
Regular user |
|
|
Joined: Jun 24, 2008 |
Posts: 8 |
|
|
|
|
|
|
|
Hi everyone! I think I found the XSS in BBCODE! So I need little help from you! When I am enter Code: | [url=http://www.somesite.com " onmouseover="alert(1);]HeLLo[/url] | and send a message to user from the source I get this Code: | <a href="http://www.somesite.com " onmouseover="alert(1);" target="_blank">HeLLo</a> | and this works fine , but i try to make a cookie loger but it is not working. Can you tell me if this could be used to steal cookies and how ???? |
|
|
|
|
www.waraxe.us Forum Index -> Cross-site scripting aka XSS
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|
|