Forum Discussion
rculvergoblue
3 days agoBronze I
Cross_site Scripting DOM-based XSS vulnerability
I am doing the Cross-Site Scripting (XSS) DOM-based XSS lab and I am trying to get the last step of the lab which is identifying the DOM-based XSS vulnerability. I am pretty sure it would not be something like <script> alert("xss") </script> since I do not think Javascript would handle it. I am leaning towards the event handlers like onerror but haven't gotten it figured out quite yet. Any clues or suggestions would be appreciated.
1 Reply
- SamDickison
Community Manager
Hi rculvergoblue, as I'm no expert on XSS (although maybe something about innerHTML, document.write, onmouseover, onload...)
These people have completed it and might be able to help:
CrouchS CyberSharpe PedroCollado WilliamM lightw1nd