Volutions - ID | News | Gadget | Tutorial | Freeware | Template | Etc.: Obama website XSS Defacement

Obama website XSS Defacement

Barack Obama website vulnerable to cross-site scripting,redirect and html injection

Poc:
http://my.barackobama.com/page/content/benefitsofreform?state=WI&email=XSS

http://my.barackobama.com/page/spud?type=getm&field=firstname,lastname,email,zip&jsonp=Redirect


http://my.barackobama.com/page/content/benefitsofreform?state=WI&email=HTML

















Note: This is a only proof of concept and it doesn't reflect the views or interests of above site!

Mirror: http://www.xssed.com

Enter your email address:

Related Post



  • Digg
  • del.icio.us
  • Facebook
  • Google
  • StumbleUpon
  • Technorati
  • TwitThis

No response to “Obama website XSS Defacement”

Leave a reply

 
Support By Blogger