I use to watch Badea’s show “In gura presei” kindly provided as a recorded streaming on antena1.ro
While listening to the stream, I could not resist checking the site design, functionality and of course it’s security.
And voila - it seems that streaming archive section of antena1.ro is XSS-reflection vulnerable.
Code for PoC XSS reflection:
Code:
DISCLAIMER: this post is intended purely for security research and educative purposes as well as intended to urge the vendor to fix the problems posing threats to its customers. Any use of this information is sole responsibility of the reader and the author is not to be held liable for any miss-use of the above informative technical details.
No Comments/Pingbacks for this post yet...
This post has 1 feedback awaiting moderation...
A deep dive into brain's curiosities
| Sun | Mon | Tue | Wed | Thu | Fri | Sat |
|---|---|---|---|---|---|---|
| << < | > >> | |||||
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | |||