Saturday 30 November 2013

LinkedIn fixes Multiple XSS Vulnerabilities


The professional social networking giant LinkedIn is affected by Multiple reflected Cross-Site Scripting vulnerabilities. An attacker can inject HTML or script code in the context of victim’s browser, so can perform XSS attacks, and steal cookies of a targeted user, according to a posting on the Full Disclosure mailing list.
Cross Site Scripting (also known as XSS or CSS) is generally believed to be one of the most common application layer hacking techniques. It is the third Vulnerability listed in Top 10 Owasp Vulnerability 2013.
Eduardo Garcia Melia reported four XSS flaws starting from December 2012. The last XSS flaw in LinkedIn fixed yesterday.
LinkedIn is a social networking service and website operates the world’s largest professional network on the Internet with more than 187 million members in over 200 countries and territories.
Proof of Concept of the XSS flaw can be found here.

D.W PRwInce
Share this post
  • Share to Facebook
  • Share to Twitter
  • Share to Google+
  • Share to Stumble Upon
  • Share to Evernote
  • Share to Blogger
  • Share to Email
  • Share to Yahoo Messenger
  • More...

0 comments

Feel Free To Say But any kind of spam comment or abuses will be deleted after review

:) :-) :)) =)) :( :-( :(( :d :-d @-) :p :o :>) (o) [-( :-? (p) :-s (m) 8-) :-t :-b b-( :-# =p~ :-$ (b) (f) x-) (k) (h) (c) cheer

 
© 2013 Ezo Downloads - Hacking News and Free Learning
Join our Forum DR.VULNER
Posts RSSComments RSS
Back to top