XSS question in Skyline pages

Post a reply

Smilies
:D :) ;) :( :o :shock: :? 8-) :lol: :x :P :oops: :cry: :evil: :twisted: :roll: :!: :?: :idea: :arrow: :| :mrgreen: :geek: :ugeek:

BBCode is ON
[img] is ON
[url] is ON
Smilies are ON

Topic review
   

Expand view Topic review: XSS question in Skyline pages

Re: XSS question in Skyline pages

by barbaz » Mon Aug 05, 2019 4:19 pm

That's not a XSS warning. It's a Blocked Objects prompt.

Re: XSS question in Skyline pages

by Bencyc » Mon Aug 05, 2019 3:45 pm

The image can be seen :

https://aijaa.com/nirOty

Re: XSS question in Skyline pages

by barbaz » Mon Aug 05, 2019 3:37 pm

Could you please post the actual full text of the XSS warning?

Re: XSS question in Skyline pages

by Bencyc » Mon Aug 05, 2019 2:58 pm

After a certain period of time the Skyline sites lock themselves so that the cams are not working any more
and there has come a note on the cam picture: AD Block .

I do not know if that is a question of Skyline sites themselves or is it a question of NoScript or
Ublockorigin causing a time restriction.

I managed to get the following note from somewhere:

"Filterskylinewebcams.com##+js(setTimeout-defuser, change(), 14000)".

I cannot reproduce it any more because I do not remember/know how and wheere I got it from (:

So the question arises is there some kind of time restriction filter on NoScript or UBlockorigin?
(I do not mean NS temporay allowance. It does not change anything in this respect)

Re: XSS question in Skyline pages

by therube » Mon Aug 05, 2019 2:55 pm

(I happened to be there of late.
Last number of days, the particular feeds I looked at did not require disabling uBlock.
Looking today, most did.

In neither case did I get any XSS notices.)

XSS question in Skyline pages

by Bencyc » Mon Aug 05, 2019 8:52 am

I have had for some time a problem viewing Skyline live web cams.
For instance:http://www.skylinewebcams.com/it/webcam ... adeje.html

The behaviour of the site has been erratic, sometimes maintaining I have a AdBlocker on even if it is not.

Now I get a XSS message asking to accept or deny acces to the page. If I allow it then the cams work OK even if I have UBLock origin on.

If I allow just http://www.skylinewebcams.com it does not open the site
but if I allow only the particular page (http://www.skylinewebcams.com/it/webcam ... adeje.html) it goes OK.

The same thing with all other Skyline webcam pages.

Now the question is, is it safe to allow the XSS question and why is coming up with that domain?

Top