A functional defect in the Netease forum may cause xss storage. Can it also be used for Weibo fans?

Source: Internet
Author: User

A street network vulnerability has been detected, which can steal cookies and worms. It has never been used and is depressing. This time I sent a Netease hole. Please pass the hole in the street network by the way ,,,


Test address http://bbs.home.163.com/bbs/chuishui/304014777,3.html#51

 

1 Netease Forum is very boring. There is still a level limit for posting or other operations, so I can't help it. So I need to reply to the post for demonstration (the reply and post are all in an editor ).


2. In the reply area, just send some text and set the css of the text. Here I set the color and size of the text.

 



3. After Entering the verification code, the system replies to the packet and finds that style exists in the post data.


4. directly modify the post data and insert the expression. The verification code in the post data can be obtained through the 5 method.


5. Enter whatever content and click "reply". A verification code is displayed.


6. After submitting the modified data, use F12 to check whether the data is filtered out.


7. Use IE to check the effect. Well, the cookie is played.


8. Insert the code that calls any external js file. Because Netease uses jq (you can find jq by checking the source code), I directly use the jq function to call js. Perform operations in the same way as the method in Step 4. Use F12 to check the page. Well, no problem. The operation is successfully inserted.


9. Change the IE browser and use another trumpet to access the page. Well, the code is executed and can be proved by the cookie caught by xsser. me.


10. Then, go to Netease Weibo and directly access t.163.com, and find that cookies are common. Of course, you can also access them through them.

 




 


 


11. It was easy to use it. I sent a photo of the beauty and sexy in Weibo and inserted the link to this forum as "! @ # ¥ % ...... & * ", Everyone understands ..

It can also be used to refresh Netease Weibo fans, send a reply to a hot post, publish a post in a popular forum, or ......

 

You can try your best to indulge yourself ,.

 

Although expression is only executed in IE7 and earlier versions, Internet cafe users are Internet Explorer 6 in China, which is quite harmful.

 

Solution:

Filter.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.