Description: exploit (this has been modified slightly to obfuscate the url parameter). The original vulnerability was found by Renaud Lifchitz as a vulnerability in Hotmail. http://ha.ckers.org/xss.html#XSS_DIV_background_image_unicode Options: -safe_attrs_only Ignore: true Notes: I don't understand how this exploit works. It seems like the description actually refers to the unicode you'd import, but why that matters I don't know.
text
----------
text