Tuesday, July 20, 2010

Facebook movies by Flixster(search option) xss vuln

About:
Rate movies and share what you saw or want to see with friends. Compare your movie taste. Take over 100,000 movie trivia quizzes.
Join over [b]40 Million people using Flixster on Facebook[/b].
This application may contain content that is unsuitable for the general Facebook user3,446,811 monthly active users

I tired few xss scripts but sadly few didnt work out...but then i tired this..

[code]">< script> alert("w00t")< /script>[/code]

So here are the few screen shoots vch actually luks dont look like xss ;) your views r necessary :D
http://img27.imageshack.us/img27/1774/xssed.png

and this is a normal search which didnot give me any popup :P
http://img696.imageshack.us/img696/7798/testaog.png

No comments:

Post a Comment