json-flash-csrf-poc
json-flash-csrf-poc copied to clipboard
This repo contains the files required to perform a CSRF attack using Flash and HTTP 307 redirections.
Results
1
json-flash-csrf-poc issues
Sort by
recently updated
recently updated
newest added
IE11 has flash enabled by default, but when the 307 was received the POST request left out the Content-Type header which caused the remote API endpoint to reject the request....