Sunday, September 14, 2014

Google Feedburner - Reflected XSS

11:03 PM Posted by Alexandru Coltuneac (dekeeu) , , , No comments
The base URL for this vulnerability will be : http://feedburner.google.com/fb/a/emailFlare?itemTitle=test&uri=test If you open the link above in browser you can see that the basic form which allows you to email a "Flare" to a random e-mail address. So, if you complete that form with random...