lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <004d01c38932$53d36980$83aee818@Holmes> From: jorge at pistone.com.ar (Pistone) Subject: INTERNIC WHOIS untrusted link XSS Aha, Jul 23 2002 5:19AM http://www.securityfocus.com/archive/82/283724/2002-07-17/2002-07-23/0 20 May 2003 00:29:17 http://lists.netsys.com/pipermail/full-disclosure/2003-May/005092.html >untrusted link XSS > untrusted link XSS ... > http://www-whois.internic.net/cgi/whois?whois_nic=%3Ca+href%3Dhttp%3A%2F%2Fe > vilsite.com%3Eclick%20here%20for%20results%3C%2Fa%3E&type=domain > > or any xss you wish to embed is also OK > morning_wood ( XSS king ) <-- (XSS CopyKing)