![]() |
|
Reflected xss in shop > checout - Printable Version +- Sinisterly (https://sinister.ly) +-- Forum: General (https://sinister.ly/Forum-General) +--- Forum: Announcements (https://sinister.ly/Forum-Announcements) +---- Forum: Suggestions (https://sinister.ly/Forum-Suggestions) +----- Forum: Old Suggestions (https://sinister.ly/Forum-Old-Suggestions) +----- Thread: Reflected xss in shop > checout (/Thread-Reflected-xss-in-shop-checout) |
Reflected xss in shop > checout - back00null - 04-01-2017 Hi, i found xss in checout page on shop, its possible to change price when i buy? RE: Reflected xss in shop > checout - Oni - 04-02-2017 Which shop? Try buying an item to prove it. RE: Reflected xss in shop > checout - mothered - 04-02-2017 You need to elaborate. If the vulnerability exists, what "exactly" did you experience? RE: Reflected xss in shop > checout - Bish0pQ - 04-02-2017 Depends, finding a vulnerability doesn't always mean you'll be able to exploit it. I'd say try it out. Make sure you're using a VPN and you spoof your MAC address when trying something like that. RE: Reflected xss in shop > checout - back00null - 04-03-2017 xss in post method, and modifyng json response )) RE: Reflected xss in shop > checout - Inori - 04-03-2017 (04-03-2017, 07:21 PM)back00null Wrote: xss in post method, and modifyng json response )) That really doesn't clarify much. Maybe an example POST body or result screenshot? Also, modifying the JSON return payload would only affect things client-side unless it gets sent back. RE: Reflected xss in shop > checout - Pikami - 04-03-2017 Why is this thread in the "Suggestions" sub forum? |