soaivu / clipbucket

Automatically exported from code.google.com/p/clipbucket
0 stars 0 forks source link

Xss Found #435

Open GoogleCodeExporter opened 8 years ago

GoogleCodeExporter commented 8 years ago
Hello,

I'm Salman Khan And I'm A Computer Expert, Web Developer, Graphics Designer & 
Web Security Researcher.

I Found Vulnerability At http://clip-bucket.com/search.php

Bug Type : Cross Site Scripting
Checked in : Firefox
OS : Windows

Impact : Cross-site scripting (XSS) is a type of computer security 
vulnerability typically found in Web applications. XSS enables attackers to 
inject client-side script into Web pages viewed by other users. A cross-site 
scripting vulnerability may be used by attackers to bypass access controls such 
as the same origin policy.

Proof Of Concept : See The Attachment

Kindly fix this bug as soon as possible .

Thanks !

Regards ,
Salman Khan
Creatix™

Original issue reported on code.google.com by salmankh...@gmail.com on 14 Oct 2013 at 12:26

Attachments:

GoogleCodeExporter commented 8 years ago
~ Search "><img src=x onerror=prompt(1)> This Code And You'll Get The Error ~

Original comment by salmankh...@gmail.com on 14 Oct 2013 at 12:27

GoogleCodeExporter commented 8 years ago
Salman, contact me on goto http://clip-bucket.com/contact

Original comment by arslan...@gmail.com on 24 Feb 2015 at 10:08

GoogleCodeExporter commented 8 years ago

Original comment by arslan...@gmail.com on 25 Feb 2015 at 3:12