AOH :: HP Unsorted F :: TB12757.HTM

feedreader3 has XSS vulnerability



feedreader3 has XSS vulnerability
feedreader3 has XSS vulnerability



Hello,

I have found that feedreader3 has XSS vulnerability in its internal browser.
When I post a script into wordpress( like , the 
RSS feed in the internal browser is vulnerable and show an alert box.
POC movie here:
http://www.hacking.org.il/demos/feedreader3.wmv 

Guy Mizrahi (ZuLL)
Hebrew blog: http://www.hacking.org.il 



The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.