XSS On Ebay.com

Discussion in 'Forum for discussion of ANTICHAT' started by Fugitif, 6 Dec 2007.

  1. Fugitif

    Fugitif Elder - Старейшина

    Joined:
    23 Sep 2007
    Messages:
    407
    Likes Received:
    227
    Reputations:
    42
    I am still Fugitif and now I want to show you how can work one vulnerable XSS Alert Bug on Ebay.com.
    To be more precise our link now is http://togo.ebay.com

    Ok..My XSS alert can be found here http://togo.ebay.com/affiliates/create/


    [​IMG]


    I go to select one version and I crush above


    [​IMG]


    and immediately later click "I WANT THIS ONE"


    In the square where asks FOR "ID" I put some string like this

    Code:
    "><script>alert(document.cookie)</script>

    [​IMG]


    and click "Browse"


    [​IMG]


    Now we cannot do anything else other than to use the search with our magic string

    Code:
     "><script>alert(document.cookie)</script>

    My Result ? !


    [​IMG]



    That's all .... have fun ppl :D


    /Fugitif
     
    7 people like this.
  2. Дрэгги

    Дрэгги Elder - Старейшина

    Joined:
    26 Aug 2005
    Messages:
    284
    Likes Received:
    400
    Reputations:
    182
    And what's the exact use of all these operations?
     
  3. Termin@L

    Termin@L Elder - Старейшина

    Joined:
    7 Dec 2006
    Messages:
    183
    Likes Received:
    43
    Reputations:
    53
    Well passive XSS, but the JavaScript code is in the POST parameters, so the victim must enter the needed code by itself?
    Think it's useless...
     
  4. LEE_ROY

    LEE_ROY Elder - Старейшина

    Joined:
    9 Nov 2006
    Messages:
    450
    Likes Received:
    188
    Reputations:
    26
    nice dude :)
     
  5. Francuz

    Francuz Elder - Старейшина

    Joined:
    2 Nov 2007
    Messages:
    94
    Likes Received:
    21
    Reputations:
    -5
    to Fugitif:
    it is does not work already...
     
  6. -MoLoToK-

    -MoLoToK- Elder - Старейшина

    Joined:
    4 Oct 2007
    Messages:
    30
    Likes Received:
    23
    Reputations:
    3
    works for me
     
  7. symbioin

    symbioin Member

    Joined:
    6 Aug 2007
    Messages:
    62
    Likes Received:
    23
    Reputations:
    -16
    hmmmm. I thought ebay have safe protect :)
     
  8. Francuz

    Francuz Elder - Старейшина

    Joined:
    2 Nov 2007
    Messages:
    94
    Likes Received:
    21
    Reputations:
    -5
    really?!
    what browser did u use?
     
  9. Fugitif

    Fugitif Elder - Старейшина

    Joined:
    23 Sep 2007
    Messages:
    407
    Likes Received:
    227
    Reputations:
    42

    U can try with Mozilla Firefox some string like this one:

    Code:
    http://togo.ebay.com/app/auctionfinder.php?query=%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3EE&page&seller&category=&TZ=-120&block=list
     
  10. -MoLoToK-

    -MoLoToK- Elder - Старейшина

    Joined:
    4 Oct 2007
    Messages:
    30
    Likes Received:
    23
    Reputations:
    3
    mozilla firefox
     
  11. ~EviL~

    ~EviL~ Elder - Старейшина

    Joined:
    14 Aug 2007
    Messages:
    169
    Likes Received:
    77
    Reputations:
    4
    What do you intend to do with this passive XSS? I don't say it's useless, but hey, be realistic people, you can hack someone very hard with a passive XSS. Correct me if I am wrong =)
     
  12. VERte][

    VERte][ Elder - Старейшина

    Joined:
    17 May 2007
    Messages:
    240
    Likes Received:
    163
    Reputations:
    32
    You're right but there's one useful thing called SocialEngineering =)
     
  13. Fugitif

    Fugitif Elder - Старейшина

    Joined:
    23 Sep 2007
    Messages:
    407
    Likes Received:
    227
    Reputations:
    42
    that is only a f****** small and simple example that also one of the greatest sites can be vulnerable.

    I want to say ... safety doesn't exist .
     
    #13 Fugitif, 10 Dec 2007
    Last edited by a moderator: 10 Dec 2007
  14. ~EviL~

    ~EviL~ Elder - Старейшина

    Joined:
    14 Aug 2007
    Messages:
    169
    Likes Received:
    77
    Reputations:
    4
    Fugitif, you are damn right! :D And what goes for the Social Engineering part, imho, I think it isn't a pure 100% hack, because you get your victim to tell you a lot about her. I don't argue, you must have a strong logic, but I am more fond of the technical side of hacking. But, hey, that's just me =)
     
    #14 ~EviL~, 10 Dec 2007
    Last edited: 10 Dec 2007