Full Disclosure mailing list archives

google plus vuln to XSS


From: pathric due <bugybu () gmail com>
Date: Thu, 30 Jun 2011 20:15:04 +0300

i've found that google plus application have a parameter thats vulnerable to
XSS
https://plus.google.com/up/start/?sw=1&type=st?p=XSS vuln parameter

http://din.gy./xLSlj
http://din.gy./xLSlj
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: