Professional Webmasters Community
Would you like to react to this message? Create an account in a few clicks or log in to continue.

Obama website XSS Defacement

Go down

Obama website XSS Defacement Empty Obama website XSS Defacement

Post  andry Mon Nov 22, 2010 1:14 am

Barack Obama's website vulnerable to cross-site scripting,redirect and html injection

Poc:
my.barackobama.com/page/content/benefitsofreform?state=WI&email=XSS

my.barackobama.com/page/spud?type=getm&field=firstname,lastname,email,zip&jsonp=Redirect

my.barackobama.com/page/content/benefitsofreform?state=WI&email=HTML

Note: This is a only proof of concept and it doesn't reflect the views or interests of above site!

Mirror: http://www.xssed.com
andry
andry
Moderator
Moderator

Posts : 467
Join date : 2010-05-07

Back to top Go down

Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum