In this post we are going to show how you can (ab)use the new HTML popup functionality in Chrome to exploit XSS in meta tags and hidden inputs.
YOU MUST
Hidden content
SudoDragon
Thread
exploit techniques
hidden inputs
meta tags
web security
xssvulnerabilities
Site:
Hidden content
Did a Stored XSS Went Well
Go Have Fun
Btw you can only upload jpg,jpeg
No option to upload a php shell
Either try for the exif data via image or the modified name shit
Note: Only for educational purpose