[prev in list] [next in list] [prev in thread] [next in thread]
List: full-disclosure
Subject: [Full-disclosure] google plus vuln to XSS
From: pathric due <bugybu () gmail ! com>
Date: 2011-06-30 17:15:04
Message-ID: BANLkTi=iz3waEZXzsi8ZE4HPkKbkCTHM9g () mail ! gmail ! com
[Download RAW message or body]
[Attachment #2 (multipart/alternative)]
i've found that google plus application have a parameter thats vulnerable to
XSS
https://plus.google.com/up/start/?sw=1&type=st?p=XSS vuln parameter
http://din.gy./xLSlj
http://din.gy./xLSlj
[Attachment #5 (text/html)]
<div dir="ltr">i've found that google plus application have a parameter thats vulnerable to \
XSS<br><a href="https://plus.google.com/up/start/?sw=1&type=st?p=XSS">https://plus.google.com/up/start/?sw=1&type=st?p=XSS</a> \
vuln parameter<br> <br><a href="http://din.gy./xLSlj">http://din.gy./xLSlj</a><br><a \
href="http://din.gy./xLSlj">http://din.gy./xLSlj</a><br><br><br></div>
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic