English
German
French
Spanish
Albanian
Arabic
Dutch
Bosnian
Serbian
Turkish
Czech
Finnish
Hungarian
Italian
Polish
Russian
Estonian
Urdu
News
Links
Sites
Forum
Ranking
Challenges
Downloads
Register
New Sites
Hack The Web
HackMyVM
pwn.college
PWN.TN
PromptRiddle
PyDéfis
CryptoHack
247CTF
New Users
sdtrdnc
akassem
monotarinai
techie
jcardenas2
wasfan
wuhulamb
drcocoon
51 Online
Guest(x43)
,
charlenerose
,
feathers_mcgull
,
IbrahimAsfan
,
rivercat
,
Robyn12
,
wasfan
Signup
Hide Sidebar
Restrict session to IP
Register
Forgot password
Statistics
46 Sites
188 Challs
9165 Posts
68883 Users
45 donations
1 Shop
46 Active Sites
World of Wargame
WeChall
TheBlackSheep
Rankk
Electrica
NewbieContest
BrainQuest
Net-Force
HackThisSite
elhacker.net
TryThis0ne
TDHack
+Ma's Reversing
Hacker.org
HackBBS
Root-Me
SPOJ
Revolution Elite
W3Challs
Gekkó
Webhacking.kr
Reversing.Kr
SuNiNaTaS
Hacking-Challenges
OverTheWire.org
RedTigers Hackit
Defend the Web
Mod-X
Omega Project
ae27ff
pwnable.kr
RingZer0 Team Online CTF
pwnable.tw
Hack The Box
try to decrypt
MysteryTwister
LordofSQLi
Énigmes À Thématiques
247CTF
CryptoHack
PyDéfis
PromptRiddle
PWN.TN
pwn.college
HackMyVM
Hack The Web
Top 10 Players
dloser
benito255
jusb3
Caesum
tehron
phoenix1204
lordOric
Xaav
thefinder
Akorlith
Last 20 Activities
wasfan
sdtrdnc
akassem
akassem
M0d3rn
bouc
xiovwx
WingeDD
wuhulamb
rivercat
AACDAI
Robyn12
jeanpaulgautier404
monotarinai
AACDAI
techie
livinskull
electrofalcon9832
overcalculus
rich
Online within 1d
37 Users
Robyn12
charlenerose
wasfan
IbrahimAsfan
rivercat
feathers_mcgull
sdtrdnc
noother
rodrigo_llanes
akassem
krizivan03
thynes4
dangarbri
tutolmin
xiovwx
n8j0y
livinskull
xseris
dlrom12
cheerfulbull
more
WeChall
->
Bug Report
Login Referer XSS
Linking with no challs solved
small typo
quangntenemy
Global Rank: 55
Totalscore: 255179
Posts: 157
Thanks: 133
UpVotes: 165
Registered: 17y 8d
Last Seen: 2d 4h
The User is Offline
Login Referer XSS
Mar 31, 2008 - 09:13:51 (16y 333d)
Google/translate
1
Thank You!
0
Good Post!
1
Bad Post!
link
After logging in the page redirects to the referer url without any validation:
You will get redirected to <script>alert(1)</script> in 5 seconds.
Kender
Global Rank: 73
Totalscore: 212985
Posts: 148
Thanks: 206
UpVotes: 108
Registered: 17y 9d
Last Seen: 2y 345d
The User is Offline
Login Referer XSS
Mar 31, 2008 - 14:48:21 (16y 333d)
Google/translate
1
Thank You!
1
Good Post!
0
Bad Post!
link
Tsktsktsk, that's not how I built it. Gizmooooore!!!!
gizmore
Global Rank: 228
Totalscore: 94568
Posts: 1695
Thanks: 1365
UpVotes: 929
Registered: 17y 10d
Last Seen: 1d 8h
The User is Offline
Send EMail to gizmore
Login Referer XSS
Mar 31, 2008 - 18:00:33 (16y 333d)
Google/translate
1
Thank You!
1
Good Post!
0
Bad Post!
link
yayaya,
i am totally guilty for that
the problem has been fixed now.
btw: this xss was a very poor attack vector ;)
The geeks shall inherit the properties and methods of object earth.
tunelko
,
quangntenemy
,
TheHiveMind
,
Z
,
balicocat
,
Ge0
,
samuraiblanco
,
arraez
,
jcquinterov
,
hophuocthinh
,
alfamen2
,
burhanudinn123
,
Ben_Dover
,
stephanduran89
,
braddie0
,
SwolloW
,
dangarbri
,
csuquvq
have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 3733 times.