Monday, November 8, 2010

XSS Vulnerability at blogspot.com - Google try to ignore?

I report to Google Security Team some days, but I have not received any reply from them, any fixes as well. They may think this is stuff, not problem. So the problem with whom?  Who may concerm?




I am still waiting for their reply. May be they will never concerm. 

3 comments:

  1. It's not critical, because blogspot.com is only for user data. Sensitive cookies are stored at blogger.com

    ReplyDelete
  2. I see, but WTF if attacker wants to drive the visitors to the malicious websites? You will see what will happen after that.

    ReplyDelete
  3. agree with totallyunknown, it's not a bug - it's feature :)

    ReplyDelete