Page 1 of 1

why the xss is triggered?

Posted: Fri Mar 17, 2017 8:47 am
by dashwin55
Hello all 1337[quote][/quote]s,
Am new to this forum and just started my bug hunting. i came across this post https://www.openbugbounty.org/incidents/218697/
and am confused that why the xss is triggered there? Coz i dont see any form there. And what is "d0a" any type of escape sequence ?
can anyone help me to understand this.
thanks.

Re: why the xss is triggered?

Posted: Sat Mar 18, 2017 11:03 pm
by Random_Robbie
mod-rewrite rules... ignore it it's only triggering the svg as it's reflected.