Rediff Cross site scripting vulnerability

// May 10th, 2009 // Disclosures

Rediff normal search and job search suffer from XSS vulnerability. It was reported to rediff on 14th April 2009, but there has been no response from rediff staff on this issue.

For detailed information click here to download pdf.

One Response to “Rediff Cross site scripting vulnerability”

  1. G.U.R.U says:

    Rediff.com seems to be fixed !!!
    Job.rediff.com is still vulnerable.

Leave a Reply