English
German
French
Spanish
Albanian
Arabic
Dutch
Bosnian
Serbian
Turkish
Czech
Finnish
Hungarian
Italian
Polish
Russian
Estonian
Urdu
News
Links
Sites
Forum
Ranking
Challenges
Downloads
Register
New Sites
Hack The Web
HackMyVM
pwn.college
PWN.TN
PromptRiddle
PyDéfis
CryptoHack
247CTF
New Users
taniz
FC5570
mathe
Shad
MateoA
S4B1L3
pjk0626
lkl1034
81 Online
Guest(x72)
,
feathers_mcgull
,
ledeburite
,
Robyn12
,
taniz(x2)
,
tinel
,
xseris
Signup
Hide Sidebar
Restrict session to IP
Register
Forgot password
Statistics
46 Sites
188 Challs
9166 Posts
68918 Users
45 donations
1 Shop
46 Active Sites
World of Wargame
WeChall
TheBlackSheep
Rankk
Electrica
NewbieContest
BrainQuest
Net-Force
HackThisSite
elhacker.net
TryThis0ne
TDHack
+Ma's Reversing
Hacker.org
HackBBS
Root-Me
SPOJ
Revolution Elite
W3Challs
Gekkó
Webhacking.kr
Reversing.Kr
SuNiNaTaS
Hacking-Challenges
OverTheWire.org
RedTigers Hackit
Defend the Web
Mod-X
Omega Project
ae27ff
pwnable.kr
RingZer0 Team Online CTF
pwnable.tw
Hack The Box
try to decrypt
MysteryTwister
LordofSQLi
Énigmes À Thématiques
247CTF
CryptoHack
PyDéfis
PromptRiddle
PWN.TN
pwn.college
HackMyVM
Hack The Web
Top 10 Players
dloser
benito255
jusb3
Caesum
tehron
phoenix1204
lordOric
Xaav
thefinder
Akorlith
Last 20 Activities
taniz
hhuang1
ledeburite
Munto
cheerfulbull
Shad
taniz
OxDC
bonesdr
MakarovKardevsky
bhigh
FC5570
wuhulamb
Bryander07
muotrad
muotrad
Jimojito
Jimojito
Poldie
obeid2
Online within 1d
49 Users
tinel
feathers_mcgull
taniz
Robyn12
ledeburite
xseris
noother
hhuang1
bufes
Shad
cheerfulbull
EXterNoN
tehron
MakarovKardevsky
bhigh
FC5570
bouc
muotrad
r_karoly
jusb3
more
WeChall
->
Bug Report
Login Referer XSS
Linking with no challs solved
small typo
quangntenemy
Global Rank: 56
Totalscore: 255181
Posts: 157
Thanks: 133
UpVotes: 165
Registered: 17y 11d
Last Seen: 5d 3h
The User is Offline
Login Referer XSS
Mar 31, 2008 - 09:13:51 (16y 336d)
Google/translate
1
Thank You!
0
Good Post!
1
Bad Post!
link
After logging in the page redirects to the referer url without any validation:
You will get redirected to <script>alert(1)</script> in 5 seconds.
Kender
Global Rank: 74
Totalscore: 212981
Posts: 148
Thanks: 206
UpVotes: 108
Registered: 17y 12d
Last Seen: 2y 348d
The User is Offline
Login Referer XSS
Mar 31, 2008 - 14:48:21 (16y 336d)
Google/translate
1
Thank You!
1
Good Post!
0
Bad Post!
link
Tsktsktsk, that's not how I built it. Gizmooooore!!!!
gizmore
Global Rank: 228
Totalscore: 94570
Posts: 1695
Thanks: 1365
UpVotes: 929
Registered: 17y 12d
Last Seen: 4d 6h
The User is Offline
Send EMail to gizmore
Login Referer XSS
Mar 31, 2008 - 18:00:33 (16y 336d)
Google/translate
1
Thank You!
1
Good Post!
0
Bad Post!
link
yayaya,
i am totally guilty for that
the problem has been fixed now.
btw: this xss was a very poor attack vector ;)
The geeks shall inherit the properties and methods of object earth.
tunelko
,
quangntenemy
,
TheHiveMind
,
Z
,
balicocat
,
Ge0
,
samuraiblanco
,
arraez
,
jcquinterov
,
hophuocthinh
,
alfamen2
,
burhanudinn123
,
Ben_Dover
,
stephanduran89
,
braddie0
,
SwolloW
,
dangarbri
,
csuquvq
have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 3736 times.