Jump to content
akkiliON

XSS Reflected - pay.google.com

Recommended Posts

  • Active Members
Posted

Salutare tuturor,

 

A trecut ceva timp de când n-am mai postat ce am găsit pe aici. :-)

Am găsit un XSS reflected în https://pay.google.com. Din păcate, merge doar pe Internet Explorer 11 din cauză că browser-ul nu suportă CSP-ul. Partea bună, este că vulnerabilitatea pe care am găsit-o a fost validată. 

 

W0uMTbN.png

 

Cam atât pot spune în momentul de față. Numai bine.

 

 

  • Upvote 7
  • Active Members
Posted

  Update:

  Quote

Hi,

 

Nice catch! I've filed a bug based on your report. The panel will evaluate it at the next VRP panel meeting and we'll update you once we've got more information. All you need to do now is wait. If you don't hear back from us in 2-3 weeks or have additional information about the vulnerability, let us know!

Expand  

 

  • Upvote 2
  • Active Members
Posted

Update:

 

  Reveal hidden contents

 

  • Upvote 9

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...