Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

Google XXE Vulnerability
From: Mark Litchfield <mark () securatary com>
Date: Fri, 21 Feb 2014 14:14:30 -0800

Hi All,

There was an XML external entity vulnerability within Googles Public data explorer. This was submitted to Google as part of their Bug Bounty Program.

For the full write up with screen shots - http://www.securatary.com/vulnerabilities

--
All the best

Mark Litchfield
http://www.securatary.com
Twitter - http://twitter.com/securatary


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


  By Date           By Thread  

Current thread:
  • Google XXE Vulnerability Mark Litchfield (Feb 21)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]