Home / os / wins2003

Clockingit.com Cross Site Scripting

Posted on 21 October 2014

# Affected software: clockingit.com # Type of vulnerability: persistent xss # URL: clockingit.com # Discovered by: Provensec # Website: http://www.provensec.com # Description: peristet xss issue # Proof of concept # victim can be exploited by just sending the link to the victim # To execute this vector goto register form, fill the name field with xss payload and a domain will generated .From this domain javascript can be executed

 

TOP