QQ chat room HTML characters unfiltered bug (Allyesno)

xiaoxiao2021-03-06  43

Term: freexploit

Author: AlLeesno

Date: 2005-3-3

Causes of vulnerabilities: Mainly, Tencent does not have a strict filtering. It seems that I have found # character vulnerabilities and fire only angel discovery recent recent QQ vulnerability

First, stealth

Although the Tencent chat room filters

Second, ID spoof

Then add someone in the name, you can pretend that others talk.

For example, if you want to pretend to be a person named Zeta, it is zeta

Third, only my alone

It is very simple to tell yourself. It's very simple to change the name to

Four, phantom

Change the name to

Basically HTML characters can be used in the above is that the names have a word limit, or the loopholes are more killing.

转载请注明原文地址:https://www.9cbs.com/read-51482.html

New Post(0)
CopyRight © 2020 All Rights Reserved
Processed: 0.035, SQL: 9