发新话题
打印

[转载]Excess (Webmail XSS tester)

[转载]Excess (Webmail XSS tester)

原始出处:http://www.scanit.be/

Excess is a tool for testing webmail systems for persistent cross-site scripting vulnerabilities. It sends a number of HTML-formatted email messages to a specified email address. In order to test a webmail system you need to have an email account on the system, run this script to send messages to that account, and then view the received messages through the webmail interface. If you get a popup box saying "XSS" it means that your webmail system failed to block the attack.

http://www.scanit.be/uploads/excess.pl
曾几何时,有人对我说:装B遭雷劈。我说:去你妈的。于是,这个人又对我说:如果再说脏话,上帝会惩罚你的。我说:我操上帝。结论:彪悍的人生不需要上帝。

TOP

发新话题