Jump to content
dancezar

[HARD] Xss challenge

Recommended Posts

  • Active Members

Target : hxxp://www.musicsrc.com/search.php?query=

Reguli :

-Injectati vectorul xss numai in linkul indicat alta locatie nu este permisa

-Trimiteti sintaxa prin PM

-Nu divulgati rezolvarea

Proof:

xss_challenge.png

http://s7.postimg.org/w65m8ip63/xss_challenge.png

Solveri:

-Toshib4

-askwrite

-

-

Edited by danyweb09
Link to comment
Share on other sites

@danyweb09Coi

This challenge is very easy, i really don't see why you describe this as "HARD", try my level 1 xss challenge here:http://12342.site11.com/level1.php?a=. That is a hard challenge.

Here are challenges i made from your challenge:

I completed the challenge without user interaction on IE 10 (xss filter=enabled).

I also completed the challenge bypassing IE 10's xss filter, chrome's webkit xss auditor and i have it working on the following browsers:Opera,firefox,chrome,internet explorer.

I'll post the challenge soon ;).

Edited by El_Strong
Link to comment
Share on other sites

  • Active Members

3 days to add a fucking (?

the single quote was there but you are blind.

Bucura-te de sederea pe rst presimt ca in maxim 2 ore faci tu ceva si iei ban

//sa inchida cineva topicul

// edit: done :)

Edited by aelius
x
Link to comment
Share on other sites

Guest
This topic is now closed to further replies.


×
×
  • Create New...