CBJS: Html Injection 3

peppa6

Peppa

Posted on September 14, 2024

CBJS: Html Injection 3

Detail

  • Giống lv1 nhưng đã bị chặn đoạn chữ script
    Image description

  • Thẻ script không còn sử dụng được nữa, phải tìm attack surface mới

  • Có thể sử dụng bất kì các tag html và khiến nó lỗi, sau đó sử dụng onerror event để chạy js

Image description

💖 💪 🙅 🚩
peppa6
Peppa

Posted on September 14, 2024

Join Our Newsletter. No Spam, Only the good stuff.

Sign up to receive the latest update from our blog.

Related

What was your win this week?
weeklyretro What was your win this week?

November 29, 2024

Where GitOps Meets ClickOps
devops Where GitOps Meets ClickOps

November 29, 2024

How to Use KitOps with MLflow
beginners How to Use KitOps with MLflow

November 29, 2024

Modern C++ for LeetCode 🧑‍💻🚀
leetcode Modern C++ for LeetCode 🧑‍💻🚀

November 29, 2024