Blind XSS tips 1. There was No sign-up page. Only sign_in. 2. Changed sign_in to sign_up 3. sign_up page appeared 4. Put bxss payload. 5. Payload executed in the admin panel of the same domain. 6. Got cookie 7. Used cookie to login to admin panel. #bugbounty #bugbountytip
7
39
264
199
12K
If there is a login page and no registration page. Try to change login to register. You may find a registration page if you are lucky. login => register or registration signin => signup sign_in => sign_up
1
2
22
12
1K
getting into js files of the login page can help to find the registration page many times
0
0
0
0
18
United States Tendenze
- 1. #WWERaw 47.3K posts
- 2. Giants 63K posts
- 3. Giants 63K posts
- 4. Patriots 91.9K posts
- 5. Drake Maye 15.8K posts
- 6. Dart 26.6K posts
- 7. Diaz 31.9K posts
- 8. Gunther 10.3K posts
- 9. Younghoe Koo 3,501 posts
- 10. Devin Williams 4,899 posts
- 11. Abdul Carter 7,202 posts
- 12. Marcus Jones 5,353 posts
- 13. Theo Johnson 1,813 posts
- 14. Kyle Williams 3,698 posts
- 15. Joe Schoen 1,605 posts
- 16. #NYGvsNE 1,625 posts
- 17. #RawOnNetflix 1,559 posts
- 18. Kafka 6,487 posts
- 19. #MondayNightFootball 1,174 posts
- 20. Ty Lue 1,288 posts
Loading...
Something went wrong.
Something went wrong.