Friday, January 30, 2009

Google Sites Reflective Cross-Site Scripting (Fixed)

http://www.xssed.com/news/84/Google_Sites_Reflective_Cross-Site_Scripting/

UPDATE: Fixed in less than 2 hours: clap clap!

Get it while it's hot! Pierre Gardenat submitted a very interesting reflective cross-site scripting vulnerability affecting the login page of Google Sites.

This could be used for example to steal accounts, but don't worry, it will probably be fixed very quickly by Google, just like the last times ;)

Enjoy!

Mirror: http://www.xssed.com/mirror/57587/

No comments:

Post a Comment