[Full-disclosure] XSS at Netcraft.com

Valery Marchuk tecklord at argocom.cv.ua
Wed Aug 2 20:51:11 BST 2006


Hi All!

This time XSS vulnerability at Netcraft. Hope this company will act a bit 
sooner than others.



Example of vulnerability is as usually in my blog at 
http://www.securitylab.ru/blog/tecklord/?category=19



All the XSS vulnerabilities, published there since Monday this week are 
still not fixed. So, there are in the list of companies, who do not care 
much about their own security and security of their customers:



PayPall

Netscape

Digg

Google

Netcraft





I wish all these companies luck in fixing vulnerabilities at their web 
sites.



Have a nice day

Valery










Full-Disclosure is hosted and sponsored by Secunia.