[Hackmeeting] xss in hackmeeting.org

Nachricht löschen

Nachricht beantworten
Autor: wiky
Datum:  
To: hackmeeting
CC: bugtraq
Betreff: [Hackmeeting] xss in hackmeeting.org
## description:

hackmeeting.org sux.

It's not opensource, it's not versioned, it's not submitted to
community, it's made by idiots.

## XSS

example, valid until authors decide to maintain same version but change
code (as usual):

http://hackmeeting.org/voloete%20solo%20vendere%20le%20cazzo%20di%
20birre%20fate%20solo%20cagare%20voi%20ed%20i%20vostri%20metabolismi%
20che%20poi%20son%20solo%20%22fammi%20fare%20i%20cazzi%20miei%22%20...%
20ahahah,%20meno%20male%20gli%20apici%20stan%20escapati%20eh



aloha,
--
wiky
0x361BABC4