sawyer Posted February 22, 2008 Report Posted February 22, 2008 Buna ziua lume,Pe hi5, la comentarii se pot lasa commenturi de genul: text, flash, etc....Sunt site`uri care iti dau codul direct la flash sa lasi comentarii prietenilor1. Ok, acum iau un exemplu, intru pe paginahttp://www.wishafriend.com/ac/comments/angels/angels1.php2. Mi`au dat codul: <embed type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/go/getflashplayer" name="flashplayer" src="http://www.wishafriend.com/ac/swf/angels1.swf" quality="high" width="340" height="210" swliveconnect="true" allowscriptaccess="samedomain" />Flash Comments at WishAFriend.com">3. L`am postat ca comment pe pagina unuia si flashul rula in spatiul de comment perfect!4. Din codul embed, am modificat url`ul flashului lor http://www.wishafriend.com/ac/swf/angels1.swf in http://siteulmeu.com/haha.swfNu vrea sa`l ruleze ca e animatie mica, ca e nu stiu ce, nu merge! Nu e de la flashuletzul meu, am incercat sa pun alte flashuri de pe alte site`uri si nu merge :SAveti idee de ce? Merge doar o anumita versiune de swf inserata ? Pls give me some advices. THanks! Quote
AhEaD Posted February 22, 2008 Report Posted February 22, 2008 hi5 nu mai accepta flashuri din surse ne-sigure cum ar fii... siteul tau. Quote
sawyer Posted February 22, 2008 Author Report Posted February 22, 2008 hi5 nu mai accepta flashuri din sure ne-sigure cum ar fii... siteul tau.Deci sa inteleg ca au o lista cu domenii de la care accepta flashuri?Care e metoda prin care ei filtreaza? Quote
moubik Posted February 22, 2008 Report Posted February 22, 2008 cu flash se pot face multe lucruri interesante printre care si header injection si cookie stealing Quote
sawyer Posted February 22, 2008 Author Report Posted February 22, 2008 haideti fratilor, nimeni n`are nici o idee cum vad aia de la hi5 ? Quote
phreak Posted February 22, 2008 Report Posted February 22, 2008 uite obtine tu acces la unul dintre siteurile care's "trusted" baga-ti ce vrea muschiu tau acolo si poti sa pui dupa aia pe haifaiv Quote
sawyer Posted February 25, 2008 Author Report Posted February 25, 2008 deci sa inteleg ca cei de la haivfaiv ai o lista cu trusted sites? Quote
phreak Posted February 25, 2008 Report Posted February 25, 2008 ce perspicac poti fi ... daca tu zici ca de pe siteul asta merg : http://www.wishafriend.com atunci daca faci rost de acces pe acel site si-ti pui tu ce flashuri vrei tu sau poate poti sa-ti faci cont si sa iti uploadez ca omu normal flashurile Quote
sawyer Posted February 25, 2008 Author Report Posted February 25, 2008 sper sa mearga am fc un scam de hi5 si voiam sa pun un flash care redirectioneaza catre un url Quote
Guest Kenpachi Posted February 25, 2008 Report Posted February 25, 2008 hi5 accepta flash de la vreo 3 siteuri printre care si youtube ... gaseste xss cu redirect in youtube si problem solved:D Quote
sawyer Posted February 25, 2008 Author Report Posted February 25, 2008 hi5 accepta flash de la vreo 3 siteuri printre care si youtube ... gaseste xss cu redirect in youtube si problem solved:Dman ai putea sa fii mai explicit pt un noob ca mine? ai putea sa ma ajuti putin cu faza asta? plz man Quote
Guest Kenpachi Posted February 25, 2008 Report Posted February 25, 2008 1. invata comenzile de baza in js utile la xss (*.location, alert)2. citeste un tutorial despre xss (gasesti la sectiunea tutoriale pe index)3. gaseste un astfel de xss pe www.youtube.com4. da'mi pm cand ai reusit si vorbim apoi Quote
deluxe69 Posted February 25, 2008 Report Posted February 25, 2008 redirectiile se pot face intr'un singur mod. cauta sa'ti faci un guestbook in care sa'ti pui flash'ul si poate o sa ai noroc sa mearga. au fost multe coduri pentru hi5 ... da' din pacate nu mai merge nimic.Asa ar trebui sa arate un cod:</div> </div> <div style="padding: 8px 30px; line-height: 16px; xtext-indent: -0.75em;"> </div><div "padding: 8px 30px; line-height: 16px; xtext-indent: -0.75em;"><div><embed AllowScriptAccess="never" AllowScriptAccess="never" src="http://widget-29.slide.com/widgets/slidemap.swf" type="application/x-shockwave-flash" quality="high" scale="noscale" salign="l" wmode="transparent" flashvars="cy=h5&il=1&channel=288230376160952105&site=widget-29.slide.com" "width:350px;height:262px" name="flashticker" align="middle"/><div "width:350px;text-align:left;">[url="http://www.slide.com/pivot?ad=0&tt=1&sk=0&cy=h5&th=0&id=288230376160952105&map=5"][img=http://widget-29.slide.com/c1/288230376160952105/h5_t001_v000_a000_f00/images/xslide1.gif][/url] [url="http://www.slide.com/pivot?ad=0&tt=1&sk=0&cy=h5&th=0&id=288230376160952105&map=6"][img=http://widget-29.slide.com/c2/288230376160952105/h5_t001_v000_a000_f00/images/xslide6.gif][/url]</div></div>Enjoy. PS: n'ai sanse sa'l ajungi pe al meu http://deluxe69.hi5.com (hai sa ma "laud".. partz) Quote
sawyer Posted February 25, 2008 Author Report Posted February 25, 2008 redirectiile se pot face intr'un singur mod. cauta sa'ti faci un guestbook in care sa'ti pui flash'ul si poate o sa ai noroc sa mearga. au fost multe coduri pentru hi5 ... da' din pacate nu mai merge nimic.Asa ar trebui sa arate un cod:</div> </div> <div style="padding: 8px 30px; line-height: 16px; xtext-indent: -0.75em;"> </div><div "padding: 8px 30px; line-height: 16px; xtext-indent: -0.75em;"><div><embed AllowScriptAccess="never" AllowScriptAccess="never" src="http://widget-29.slide.com/widgets/slidemap.swf" type="application/x-shockwave-flash" quality="high" scale="noscale" salign="l" wmode="transparent" flashvars="cy=h5&il=1&channel=288230376160952105&site=widget-29.slide.com" "width:350px;height:262px" name="flashticker" align="middle"/><div "width:350px;text-align:left;">[url="http://www.slide.com/pivot?ad=0&tt=1&sk=0&cy=h5&th=0&id=288230376160952105&map=5"][img=http://widget-29.slide.com/c1/288230376160952105/h5_t001_v000_a000_f00/images/xslide1.gif][/url] [url="http://www.slide.com/pivot?ad=0&tt=1&sk=0&cy=h5&th=0&id=288230376160952105&map=6"][img=http://widget-29.slide.com/c2/288230376160952105/h5_t001_v000_a000_f00/images/xslide6.gif][/url]</div></div>Enjoy. PS: n'ai sanse sa'l ajungi pe al meu http://deluxe69.hi5.com (hai sa ma "laud".. partz)nu am gasit nici un site in care pot sa`mi pun flashul in guestbook doar poze.. am dat upload in loc de poza la swf tampitul de mine sa vad daca merge si ghici ce s`a intamplat!! :D:D ..... n`a mers Dooh :roll: Quote
deluxe69 Posted February 25, 2008 Report Posted February 25, 2008 guestbook'ul il faci pe slide.com pui flashu acolo si iei codu. numai ca nu stiu daca mai merge. la mine merge pentru ca l'am facut inainte sa dezactiveze ei. Quote