Jump to content
dr.d3v1l

[XSS] microsoftstore.com

Recommended Posts

Posted

Hello,

Thank you for reporting this issue to the Microsoft Security Response Center (MSRC). Self-XSS is not considered a security vulnerability as it requires social engineering.

Please see the following for more information:

"Definition of a Security Vulnerability"

<https://msdn.microsoft.com/en-us/library/cc751383.aspx>

"Online Services Bug Bounty Terms"

<https://technet.microsoft.com/en-us/security/dn800983>

Thanks, @n3curatu

Posted

Sunt foarte muisti cei de la Microsoft la fazele de genul, cred ca am peste trei self-uri raportate si la toate am primit raspunsul standard, in primul rand vulnerabilitatea nu trebuia sa fie acolo, nu inteleg de ce catalogheaza self-urile ca low risk si priority.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...