Web - Client

Friday 11 March 2016, 00:39  #1
Web - Client XSS stored 2

Hi everyone can you give me any hint in this challenge i tried all possible character or filter bypass i had nothing can you help me thanks a lot

Saturday 4 February 2017, 16:52  #2
Web - Client XSS stored 2
Karlosalol
  • 1 posts

it works with jscolor

Wednesday 6 September 2017, 05:31  #3
Web - Client XSS stored 2
khaine
  • 1 posts

Hi, guys.
I can insert my own value on the board through the cookie but can’t trigger an alert.
Please give me a clue is this a right vector or I have to bypassing filter in message field?
And the admin-section... It looks wierd.