Re: Help with referer issues in XSS

gorka - <[email protected]>
Newsgroups gmane.comp.security.websecurity,gmane.comp.security.web-applications
Message-ID <CAJFJO4JzUsFX+LTTBAqDAGC4LA8JWMUSz9nJf3qQC1C5jfVoig@mail.gmail.com>
If you are using firefox you have addons that let you specify whatever you
want in the referer field.

referer
https://addons.mozilla.org/en-US/firefox/addon/refcontrol/
or other header fields
https://addons.mozilla.org/en-US/firefox/addon/header-tool/


2012/3/2 Yuping Li <[email protected]>

> Hi, all
>
> Suppose there is a reflect XSS vulnerability in a pop SNS, but this
> site is "concerned" about security, so they check the referer field of
> certain POST request to make sure that they are normal and correct. Is
> it possible for me to bypass this check within javascript? It seems
> that I can't set this parameter like this:
>
> xmlHttp.setRequestHeader("Referer","http://expected.target");
>
> It would be appreciated if someone can give me a clue.
>
> Regards,
>
>
>
> This list is sponsored by Cenzic
> --------------------------------------
> Let Us Hack You. Before Hackers Do!
> It's Finally Here - The Cenzic Website HealthCheck. FREE.
> Request Yours Now!
> http://www.cenzic.com/2009HClaunch_Securityfocus
> --------------------------------------
>
>

_______________________________________________
The Web Security Mailing List

WebSecurity RSS Feed
http://www.webappsec.org/rss/websecurity.rss

Join WASC on LinkedIn http://www.linkedin.com/e/gis/83336/4B20E4374DBA

WASC on Twitter
http://twitter.com/wascupdates

[email protected]
http://lists.webappsec.org/mailman/listinfo/websecurity_lists.webappsec.org
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.