(it)gossips     Twitter     Advertise     Squidoo     Subscribe for FREE newsletter

Massive HTML Injection Vulnerability

February 15th, 2008 by | Filed under Uncategorized.

This could become a massive vulnerability since many sites or blogs out there allow user to post image on their article’s comment. As my small research, I found out that we could launch a HTML Injection, XSS and even CSRF attack to sites that vulnerable to this. Here is the PoC :

(more…)

You might also intersted to these posts :


[Read the rest on (it)gossips network: Zoiz]

Subscribe to Our FREE Newsletter Now:

Enter your email address:

 

Trackbacks

(Trackback URL)

close Reblog this comment
blog comments powered by Disqus Some people come to this post with this search term: base 64 html injection,