Facebook URL Redirection Vulnerability
Hi Rafay,
This endpoint contains a specialized parameter that limits its usage to a small number of computers and users, preventing it from being used as a completely open redirect. For more detailed background information, please see this note by one of the engineers on the product: http://www.facebook.com/notes/facebook-security/link-shim-protecting-the-people-who-use-facebook-from-malicious-urls/10150492832835766
=================================================================
Facebook Open Redirect Vulnerability
=================================================================
Affected Application : Main Website
Severity : Medium
Local/Remote : Remote
Vulnerable url : http://facebook.com/l.php?u=http://rafayhackingarticles.net&sugexp=chrome,mod=9
&sourceid=chrome&ie=UTF-8&h=AAQGmYELO
Vulnerable URL:
www.facebook.com/l.php?u=
Discovered by: Rafay Baloch - [rafaybaloch(at)gmail(dot)com]
[Summary]
Due to a parameter filtering weakness any supplied input is accepted; as result redirects a user to the parameter value without any validation.
Note: This vulnerability works for only few users, It won't work for every one.
Upadate: If the URL mentioned above does not work, kindly try the following:
www.facebook.com/l.php?u=https://google.com&h=YAQH4kMuY&s=1
How does this equate to facebook being hacked?
ReplyDeleteFinally you did it :') Proud of you Bro..
ReplyDeleteRegards
M.Gazzaly
(http://www.gazzaly.info)
It's nothing harmful..The facebook asks - it an external site, you can continue or not..it's upto you. They even show the url, you'll b visiting.
ReplyDeleteIt works for me..cheers
ReplyDeleteThis is very dangerous, but has since been corrected. Thanks for reporting.
ReplyDelete(Two are appearing on social networking sweepstakes Blog posts).
sir,what is the use of it?
ReplyDeletethanks buddy. it works!!
ReplyDelete@ Anonymous 6 : Suppose I have an infected website and want the victim to visit it to make his computer infected, I'll attach my infected website's url behind the trusted website's url and make the victim believe that it's a part of the trusted website.
ReplyDeleteBINGO!! I'm done!!!
I not get your point can u help to explain again pls
ReplyDeleteHey can u help me explain it i not get what u says
ReplyDeletesend me step in my email id pls
pls hack this account and send to me a password augustine nitcha. . . that is his name . . . pls help me to get his password because a want to revenge him .....pls help me ASAP. . . .
ReplyDeletesend into my yahoomail . .angiliecabungcal@yahoo.com
hiiiiiiiiiiii i am also a baloch
ReplyDeleteYe Kis Chez kay Liay hay Didnt Understand
ReplyDelete