V2EX = way to explore
V2EX 是一个关于分享和探索的地方
Sign Up Now
For Existing Member  Sign In
marginleft
V2EX  ›  问与答

设计实现一个微信的 xss?

  •  
  •   marginleft · Dec 7, 2015 · 4829 views
    This topic created in 3800 days ago, the information mentioned may be changed or developed.

    今天发现这个链接:

    http://rd.wechat.com/qrcode/confirm?block_type=101&content=helloworld
    

    页面显示的内容由content字段决定

    大家来试试,看看能不能 xss ?

    1 replies    2015-12-07 13:29:41 +08:00
    virusdefender
        1
    virusdefender  
       Dec 7, 2015
    转义了,不用玩了
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   1195 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 29ms · UTC 17:10 · PVG 01:10 · LAX 10:10 · JFK 13:10
    ♥ Do have faith in what you're doing.