XSS – Security Update For EasySocial 2.0.19

Hi, Recently during a pentest on a web application i’ve discovered a little bug on joomla component called com_easysocial. Basically the component lets people to join to social network uploading photos, posting messages on a wall, etc. On one of this “social fun walls” we can upload an image that

CTF, Wargame, XSS,

XSS Challenges

Here’s my journal to solve all the XSS Challenges writed  by yamagata21 on, This is an starter level to people who want to learn some cross-site scripting and its several ways to inject on differents browsers. XSS Challenges Stage1: Solution: <script>alert(document.domain);</script> Stage2: Solution: “><script>alert( alert(document.domain))</script> Stage3: Solution: The input in text box