Monday, February 25, 2013

Cross Site Scripting Vulnerability In NDTV

A Security Researcher Vedachala from ICD, has identified Cross site scripting security flaw in one of the famous XSS Vulnerability in NDTV goodtimes website ..NDTV Good Times is the flagship channel of NDTV Lifestyle, part of the NDTV Group
.



POC [Unfixed] :

http://goodtimes.ndtv.com/video/videosearchlisting.aspx?keyword=%22%3E%3Cscript%3Ealert%28%22E-hacking4all%22%29;%3C/script%3E

Recently the researcher also found a xss vulnerability in popular sites like Airtel, ooowebhost,IBN CNN  etc.

No comments:

Post a Comment