RE: how to deface a website 05-16-2013, 07:24 PM
#21
Another way to do this is if you find a field vulnerable to XSS. Look into document.documentElement.innerHTML. One thing to remember is that this only affects the page that loads the content you've injected
![[+]](https://sinister.ly/images/modern/collapse_collapsed.png)