[ authorization ] [ registration ] [ Yenileme ]
Iletisim
Bize ulasabilirsiniz:
0day.today Exploits Market and 0day Exploits Database

Facebook Comment's Picture Hijacking

[ 0Day-ID-20915 ]
Full Baslik
Facebook Comment's Picture Hijacking [ Highlight ]
Highlight - is paid service, that can help to get more visitors to your material.

Price:
Eklenme Tarihi
Kategori
Platform
Dogrulanma
Fiyat
Ucretsiz
Risk
[
Security Risk Medium
]
Rel. releases
Tanim
Today Facebook rollouts for FB users to comment with picture on any status. But the feature has a bug which allows malicious user to hijack the picture from any comments if the picture is share by uploading for comment.

After Malicious user hijack the picture, malicious person can change picture description as well as delete the picture.

Let's get started! all you need are status ID and victim's uploaded picture for comment ID.

Once you have both, we can simply comment on any status with that uploaded picture iD with the help of little javascript or you can use tampa data (attached_photo_fbid) to post with comment picture ID.
Satici
www.facebook.com
Etkilenenler
www.facebook.com
Test edildi
Google Chrome
Cozum
facebook needs to fix their fuction
Etiketler
facebook     exploits     bug  
Prooves Information
Video proof
Other Information
Abuses
0
Yorumlar
2
Goruntulemeler
23 065
We DO NOT use Telegram or any messengers / social networks! We DO NOT use Telegram or any messengers / social networks! Please, beware of scammers!
Ucretsiz
Open Exploit
You can open this source code for free
Open Exploit
Open Exploit
You can open this source code for free
Verified by
Verified by
This material is checked by Administration and absolutely workable.
Yazar
BL
29
Exploit
4
Okuyucular
22
[ Yorumlar: 2 ]
Terms of use of comments:
  • Users are forbidden to exchange personal contact details
  • Haggle on other sites\projects is forbidden
  • Reselling is forbidden
Punishment: permanent block of user account with all Gold.

Yorum yazabilmek icin giris yapin ve ya uye olun