Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Type xxs

Type xxs

From: <root_at_spiffomatic64.com>
Date: Fri, 6 Aug 2004 18:03:52 -0400

Vendor : typepad.com
URL : http://typepad.com
Risk : Cross site scripting

Description: TypePad is a powerful, hosted weblogging service that gives
users the richest set of features to immediately share and publish
information -- like travel logs, journals and digital scrapbooks -- on
the Web. TypePad lets people communicate, publicly or privately, with
the audience of their choosing.

Cross site scripting: The filtering script for the name form doesnt
filter " if preceeded by a ?. The cross site scripting works because the
<a href=" tag can be closed by a target url with " which then permits
the user to use such oneventhandles as onmouseover.

Solution: The easiest way would be to just replace all characters with
their &#xx; equivilant.

Credits: Credits goto my loving fiance, you push me todo things i never
thought possible.

Exploit: This is exploited by passing a url with malicious javascript to
the name variable.

Spiffomatic64
Hacking is an art-form

-Matt Oyer
Spiffomatic64.com
Received on Aug 07 2004

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]