Persistent XSS
In Blogtags (reported, but not fixed)
In Grouplocation Tag and Group Website field (reported, but not fixed)
Reflective XSS
On Profile not found page
(already fixed)
Edit:
Workarround not acceptable works with other attack vector.
Same on Group not found page and so on.
Opera…
Continue
Posted on May 5, 2008 at 9:30pm — 11 Comments
Comment Wall (7 comments)
You need to be a member of House of Hackers to add comments!
Join this Ning Network
4 a real big deal aiiit