Open Redirection with FCKeditor Exploit
Budget: $10 – $30 USD
I'm looking for an expert who can exploit the Open Redirection vulnerability present in FCKeditor.
I discovered below website urls on Google search results when doing a search.
https://meetings.ausa.org/cfide/scripts/ajax/fckeditor/editor/filemanager/browser/default/browser.html?Connector=https://soo-foo.com/gnews/?id=how-to-get-v-bucks-in-save-the-world-2rcub.php
https://schools.archchicago.org/html/js/editor/fckeditor/editor/filemanager/browser/default/browser.html?Connector=https://malfill.xyz/vb/video/free-v-bucks_a8o0gc.html
These urls redirect to some other websites, but when I change the Connector part to "Connector=https://someurl.com/filename.html", the redirection get broken.
I tried to check the source code of the urls in the "Connector=" and found that they have some code in there.
I need someone to work out the right setup to get the redirection done.
I discovered below website urls on Google search results when doing a search.
https://meetings.ausa.org/cfide/scripts/ajax/fckeditor/editor/filemanager/browser/default/browser.html?Connector=https://soo-foo.com/gnews/?id=how-to-get-v-bucks-in-save-the-world-2rcub.php
https://schools.archchicago.org/html/js/editor/fckeditor/editor/filemanager/browser/default/browser.html?Connector=https://malfill.xyz/vb/video/free-v-bucks_a8o0gc.html
These urls redirect to some other websites, but when I change the Connector part to "Connector=https://someurl.com/filename.html", the redirection get broken.
I tried to check the source code of the urls in the "Connector=" and found that they have some code in there.
I need someone to work out the right setup to get the redirection done.