FB marketplace persistent xss

on
FB marketplace has 4,247,992 monthly active users and suffers from persistent crosss site scripting.
http://www.facebook.com/apps/application.php?id=128581025231&ref=appd
(application link)
Goto
http://facebook.oodle.com/account/listing/
and post your xss script and post..if you have creativity you can use them ;)

Note: Also redirection works

Screenie:

0 comments:

Post a Comment