about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Google Desktop Cross-Site Scripting Weakness


Title Google Desktop Cross-Site Scripting Weakness
Published 2007-02-21-12:00AM
Updated 2007-02-26-07:06PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  This issue was discovered by Yair Amit with the cooperation of Danny Allan and Adi Sharabani.
Vulnerable  Google Desktop Search
Not Vulnerable  Google Desktop Search 5.0.701 .30540
Code   An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI.

A demonstration of this issue is located at the following URI:

http://download.watchfire.com/googledesktopdemo/index.htm


http://127.0.0.1/path/search?q=%22%3E%3Cscript%3Ealert%28%27bl4ck%27%29%3C%2Fscript%3E
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 00:30:52 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
sex indian any import FUCKING GI hot pussy. lhc558.cn Www.mainse gaurav www.malaya www.xxwxa. Powered by news for c all cartoo phpBB por news for c invision www.ninthf t963t Front gaysexy Sugar ray sindhsex WWW.Thisha remository news for c chang expolit news searc www.xxx mo www indan stickpage. audits Daftar peg breastimag search/exp Crack Data sexicture. Full Sexy www indan hot sex sh sexgrls.co arcor bis tamil+hero Hot sex vi kar20 news for C free sex v H...25253F usa injection