当前位置:网站首页>Sohu white society cross site vulnerability
Sohu white society cross site vulnerability
2022-04-21 16:37:00 【Sword-heart】
Vulnerability Details
Disclosure status :
2010-08-02: The details have been notified to the manufacturer and are waiting for the manufacturer to process
2010-08-04: The manufacturer has confirmed , The details are only disclosed to the manufacturer
2010-08-14: The details are disclosed to the core white hat and experts in related fields
2010-08-24: The details are open to ordinary white hats
2010-09-03: The details are disclosed to the white hat
2010-09-06: The details are made public
A brief description :
sohu White society cross site vulnerability
Detailed instructions :
sohu There are cross site vulnerabilities in the white society sharing function , The page only verifies the URL entered by the user on the client , Data can be submitted through tools to bypass . Formed XSS May lead to CSRF
Vulnerability to prove :
If the shared URL Submitted as ‘javascript:alert(/xss/)’ It will lead to cross station . Form the following :
<iframe id="j-shareFrame" frameborder="0" scrolling="yes" src="javascript:alert(/xss/)" style="overflow-y: auto; overflow-x: hidden; height: 296px; ">
</iframe>
javascript:sohu.feed.FreshHome.addFriend('123456789',this,true)
Repair plan :
Strictly verify user input on the server
Copyright notice : Please quote source for reprint xti9er@ Dark clouds
版权声明
本文为[Sword-heart]所创,转载请带上原文链接,感谢
https://yzsam.com/2022/04/202204211632370981.html
边栏推荐
- C language - elaborate on functions and structures
- 排序课后练习题
- C# 滑动验证码|拼图验证|SlideCaptcha
- 项目中遇到的问题(四) @async的用法及其批量处理大量数据的思路
- OJ daily practice - Bonus
- Jianmu continuous integration platform v2 3.0 release
- 手机硬件都有哪些
- 4.25解锁OpenHarmony技术日!年度盛会,即将揭幕!
- 2018-8-10-win10-uwp- exit the program
- Problems encountered in the project (IV) @ async usage and its idea of batch processing a large amount of data
猜你喜欢

Sort the exercises after class

C语言程序的环境,编译+链接
![Buuctf's [actf2020 freshman competition] BackupFile](/img/92/95ba83a3bc8b4ad758097e27c821ce.png)
Buuctf's [actf2020 freshman competition] BackupFile

SQL -- database operation (DDL, DML, DQL) + use the command to view the storage location of the current database (database version query)

Jianmu continuous integration platform v2 3.0 release

2018-8-10-win10-uwp-退出程序

Use of Arthas tunnel

Burp is a simple TP5 rce passive scanning plug-in

Campus Talking 小记(5)

确定还不来看看?这样管理你的代码库既方便又省心
随机推荐
Pfsense和Snorby
Understand the new economic model of platofarm and its ecological progress
Apache安全配置
What are the technological innovations of Apple A13 Processor?
The elmentui drop-down box realizes all functions
pplive网站存在存储型跨站脚本漏洞
Assembly language programming: design and debugging of input character type statistics in modular programming
在线词典网站
Test case of kingbasees v8r3 cluster modifying data path of Jincang database
Iterative deepening search
想靠“泄露数据”来发家?真刑啊
Burp 一个简易的tp5-rce被动扫描插件
Detailed explanation of websocket protocol
项目实训2022-4-21(火焰草)
遨游浏览器本地跨站脚本漏洞
SIGIR 2022 | 从Prompt的角度考量强化学习推荐系统
Mini LED有哪些优势
C语言程序的环境,编译+链接
手把手教你基于LXD用OAK-D和ROS noetic做ORB SLAM3
Are you sure you don't want to see it yet? Managing your code base in this way is both convenient and worry free