Jump to content

Xss vulnerability

Windows9

Browser, version and OS: 

Chrome Win 10 1908

Steps to reproduce/what were you doing before it happened?

When you edit a topic, you can bypass XSS protection. Although the code is not executed, someone who has more time might be able to figure out how to exploit it

 

What did you expect to happen?

Cloud flare XSS protection

 

Screenshots of the issue, if applicable:             

 

   image.png.747aa3b82dabf497b93f445a25c7cfd6.png

Please tag me @Windows9 so I can see your reply

Link to comment
Share on other sites

Link to post
Share on other sites

By XSS protection, you mean Cloudflare? If anything you're posting is triggering Cloudflare, let me know the ray ID of the error and I will turn off that rule - Cloudflare is not and will never be part of our XSS protection.

 

The plain text of your post is already HTML encoded, so putting <script> tags in it doesn't pose any risk.

 

To insert a script that would have a chance of being used, you would need to use inspect element/etc to insert a script into the actual HTML inside the editor, but that content is sanitised using a whitelist - while vulnerabilities are not impossible, and I have found and reported some in the past, they were not simply "insert a script tag" attacks and all exploited a couple of ways to avoid the sanitiser (rather than vulnerabilities in the sanitiser itself) that have now been fixed.

HTTP/2 203

Link to comment
Share on other sites

Link to post
Share on other sites

13 hours ago, colonel_mortis said:

By XSS protection, you mean Cloudflare? If anything you're posting is triggering Cloudflare, let me know the ray ID of the error and I will turn off that rule - Cloudflare is not and will never be part of our XSS protection.

When you try posting a topi with <script> cloudflare blocks it, Ill attach a screenshot

Please tag me @Windows9 so I can see your reply

Link to comment
Share on other sites

Link to post
Share on other sites

It dosen't seem to be repeatable anymore, last time I did it 2 times in a row. Also did a mod lock this or did I do it

image.png.b2f6f9723fbd18f95eda426055e12977.png

Please tag me @Windows9 so I can see your reply

Link to comment
Share on other sites

Link to post
Share on other sites

6 hours ago, Windows9 said:

It dosen't seem to be repeatable anymore, last time I did it 2 times in a row. Also did a mod lock this or did I do it

image.png.b2f6f9723fbd18f95eda426055e12977.png

 

@Windows9; It appears as if you have locked the topic, although if I remember correctly, only moderators and admins can lock/unlock topics, is it a new feature or something allowing the original poster to lock topics and how to use it?

Hope this information post was helpful  ?,

        @Boomwebsearch 

Link to comment
Share on other sites

Link to post
Share on other sites

1 hour ago, Boomwebsearch said:

It appears as if you have locked the topic, although if I remember correctly, only moderators and admins can lock/unlock topics, is it a new feature or something allowing the original poster to lock topics and how to use it?

Its not working anymore

Please tag me @Windows9 so I can see your reply

Link to comment
Share on other sites

Link to post
Share on other sites

8 hours ago, Windows9 said:

It dosen't seem to be repeatable anymore, last time I did it 2 times in a row. Also did a mod lock this or did I do it

 

Excuse us for having bit of fun. Only moderators and up can lock threads.

^^^^ That's my post ^^^^
<-- This is me --- That's your scrollbar -->
vvvv Who's there? vvvv

Link to comment
Share on other sites

Link to post
Share on other sites

3 minutes ago, LogicalDrm said:

Excuse us for having bit of fun. Only moderators and up can lock threads.

Oh, thought something was wrong. If a mod pastes it in, will it lock it or do they have to click the lock button

Please tag me @Windows9 so I can see your reply

Link to comment
Share on other sites

Link to post
Share on other sites

9 minutes ago, Windows9 said:

Oh, thought something was wrong. If a mod pastes it in, will it lock it or do they have to click the lock button

Any message left in thread is manually typed. Some may use macros or paste-collections.

^^^^ That's my post ^^^^
<-- This is me --- That's your scrollbar -->
vvvv Who's there? vvvv

Link to comment
Share on other sites

Link to post
Share on other sites

9 hours ago, Windows9 said:

@colonel_mortis This is a screenshot of what normally happens

 

To be able to whitelist the rules that you're hitting, I need to know the ray ID from the error page.

HTTP/2 203

Link to comment
Share on other sites

Link to post
Share on other sites

1 hour ago, colonel_mortis said:

To be able to whitelist the rules that you're hitting, I need to know the ray ID from the error page

This was from some time ago, so no I have no Ray ID available, only this screenshot

Please tag me @Windows9 so I can see your reply

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×