Friday, January 27, 2012

Cross Site Scripting (XSS) Vulnerability in Google

Cross Site Scripting (XSS) Vulnerability in Google
Ucha Gobejishvili Hacker with codename "longrifle0x" discovered another Cross Site Scripting (XSS) Vulnerability in Google's Website. He already reported about the Vulnerability to Google Security Experts.

Proof of Concept:
Open https://www.google.com/a/cpanel/premier/new3?hl=en and Click Find Domain .
Put xss code: