Kevin Mitnick , the legend of Social Engineering, was the most-wanted computer criminal in the United States, now working as Security Consultant. The website belong to Mitnick is found to be vulnerable to Cross site scripting(XSS) Vulnerability.
Vulnerability Details:
- Target: MitnickSecurity
- Vulnerable Link : http://mitnicksecurity.com/workshop_signup.php
- Vulnerable Field : strEmail
- POC: /"><iframe onload=alert(document.cookie)>