Did it just stop working cause it wont work for me anymore.
Edit: lol fixed in a day.
This was the XSS:
https://www.blizzard.com/login/logout.xml?referer=http://www.worldofwarcraft.com/%22;alert(%27xss%27);function%20setTimeout()%20{}//&loginType=wow
Blizzard seems to have fixed it within a day of me posting it. They obviously monitor these forums. Anyone have an idea of how I can share future discoveries like this more discreetly?
Last edited by reduction; 03-05-2009 at 09:14 PM.
Did it just stop working cause it wont work for me anymore.
Edit: lol fixed in a day.
Last edited by cloudafloat; 03-05-2009 at 10:34 PM.
donate and post in the contrib/donar section
What was the link?
And since Blizz fixed this, they are probably monitoring it. So now they know who you all are![]()
They don't have to monitor MMOwned to find their vulnerabilities. Trust me, as soon as anyone have exploited it, they'll be 5 minute from the fix no matter what.
Sorry but what can you do with a Blizzard XSS? Just wondering what it is?
What if a blizzard employee was a contributor or they donated (More likely)?
oh look another place to pounce on ya nub.. all you have done is troll and it is starting to obviously get on other peoples nerves.
you call me a child yet i am 20 years old. you call me a what was it .. oh yes, "brat" .. for someone to call me that you would have to be atleast 50 years old..
so "dad" your ignorance has been noted. yes they watch these forums, no they dont fix everything.. hell it was a year and counting before they finally did something about account theft en mass and even changed their site layout to stop some phishers
not to mention there are people who browse here and report it to blizzard, had to ban a few, that much i know.
take your opinions elsewhere, we dont want them you negative nancy.
Can someone explain what this Blizzard.com XSS is?
If you think it is genuinely good. Then give it to a high ranked user such as myself and I will post it in a higher section and direct all rep to be given to you.
Donator 6/2008.Contrib 8/2008.Elite 10/2008.Newsteam 11/2008.Legendary 2/2009.