Jump to content
ddlmail

Yahoo mail authentication bypass Vulnerabilities

Recommended Posts

Yahoo Multiple Vulnerabilities

Various Yahoo! services are vulnerable to authentication bypass, session

binding, weak cookie encoding, cross-site scripting file inclusion and url

redirection vulnerabilities, which is caused due to improper validation of

user-supplied inputs.

1. Authentication Bypass and Session Binding Vulnerability.

A malicious user can log on to the yahoo without submitting the username

and password by constructing a malicious URL using cookies.

2. Cookie Encoding Security Weakness

3. Cross-Site Scripting.

4. URL redirection.

Full Story in http://www.xdisclose.com

__________________________________________________________________________

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...