Hallo zusammen,
Habe einige XSS Test auf meiner Site gemacht.
Wieso ist das Attribut value jetzt: nEvent=X142848524Y7Z woher kommt dise Nummer?
Für alle Antworten Dankbar!
Habe einige XSS Test auf meiner Site gemacht.
Code:
Params strasse
Payload: '%20onEvent=@REQUESTID@%20
Result: comment: A significant portion of the XSS test payload appeared in the web page, but the page's DOM was not modified as expected for a successful exploit. This result should be manually verified to determine its accuracy.
v>
</td>
<td><input class="inputTx saveJAsy" name="strasse" maxlength="250" value="\' onEvent=X3032882260Y5Z " id="strasse" type="text" />
</td>
</tr>
Payload: '%20onEvent=@REQUESTID@%20
Result: comment: A significant portion of the XSS test payload appeared in the web page, but the page's DOM was not modified as expected for a successful exploit. This result should be manually verified to determine its accuracy.
>
</div>
</td>
<td><input class="inputTx saveJAsy" name="ort" maxlength="250" value="\' onEvent=X142848524Y7Z " id="ort" type="text" />
</td> </tr>
Für alle Antworten Dankbar!