marginleft
V2EX  ›  问与答

设计实现一个微信的 xss?

  •  
  •   marginleft · Dec 7, 2015 · 4850 views
    This topic created in 3810 days ago, the information mentioned may be changed or developed.

    今天发现这个链接:

    http://rd.wechat.com/qrcode/confirm?block_type=101&content=helloworld
    

    页面显示的内容由content字段决定

    大家来试试,看看能不能 xss ?

    1 replies    2015-12-07 13:29:41 +08:00
    virusdefender
        1
    virusdefender  
       Dec 7, 2015
    转义了,不用玩了
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   936 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 405ms · UTC 20:56 · PVG 04:56 · LAX 13:56 · JFK 16:56
    ♥ Do have faith in what you're doing.