Welcome to HBH! If you have tried to register and didn't get a verification email, please using the following link to resend the verification email.

XSS help


ghost's Avatar
0 0

Ok, i found this page which was xss vuln, but not anymore.. they escape < and " now.

my code was: <script src=MY LINK HERE/blabla.js</script>

but it returned this: srchttpMY LINK HEREblabla.jsscript

is there any way to still exploit this??

pls reply!


bl4ckc4t's Avatar
Banned
0 0

Many ways, although read some of the articles to see if they tell you.

BC


ghost's Avatar
0 0

i tried some other ways, i made up some ways, but none of them worked!


bl4ckc4t's Avatar
Banned
0 0

Ask System Meltdown if he might share his 0day with you. I'm not guaranteeing he will. Took me a long time to pry it out of him, I promised him that I wouldn't share it since it was his find.

If he says no, Look for ways.

BC


ghost's Avatar
0 0

hehe, ok, i'll beg for it:P