IPB 2.16 exploits

Discussion in 'Forum for discussion of ANTICHAT' started by Searche, 21 Jun 2006.

  1. Searche

    Searche New Member

    Joined:
    21 Jun 2006
    Messages:
    3
    Likes Received:
    1
    Reputations:
    0
    Hello I just came across your forum and while I was reading the russian part it ,I noticed an Xss exploit in IPB 2.16. Furthemore, I was interested to know , but I was not able to fully understand your explanation. Please, I would be greatful if you support english translation to this xss exploit in this thread http://forum.antichat.ru/threadnav17358-6-10.html

    However I was not able to understand what this exploit effect is?
     
  2. bl4ck-cat

    bl4ck-cat Elder - Старейшина

    Joined:
    17 Jun 2006
    Messages:
    52
    Likes Received:
    12
    Reputations:
    10
    you can get the cookie files of the administrator... but.. that wont give nothing special... the thing is that you must put an javascript code to the meta data of a picture and put it like an avatar... but it works only for IE
     
  3. Searche

    Searche New Member

    Joined:
    21 Jun 2006
    Messages:
    3
    Likes Received:
    1
    Reputations:
    0
    Ok thanks . Are there other exploits for IPB 2.16, that have greater effect currently?
     
  4. Sulf aka Joker

    Sulf aka Joker Elder - Старейшина

    Joined:
    3 Jul 2006
    Messages:
    88
    Likes Received:
    23
    Reputations:
    3
    2.1.6 sploit is now on public use :

    http://forum.antichat.ru/showpost.php?p=174952&postcount=19
     
    2 people like this.