Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

December 19th, 2011, 13:05 GMT · By Eduard Kovacs

BLOG

Comodo Certificate Authority Website Vulnerable to XSS Attacks

SHARE:

Adjust text size:

Comodo website vulnerable to XSS attack Enlarge picture - Comodo website vulnerable to XSS attack
It seems as for some, a serious hacking operation is not enough to make them learn about the importance of a secured website. After not long ago they fell victim to a data breach as a result of which many of their customers were left exposed, Comodo proves that it learned very little from the incident.

Team Elite discovered that the log-in page from their official website contains a serious cross-site scripting (XSS) vulnerability that can be taken advantage of by a hacker to easily execute arbitrary code.

The information was made public two days ago, but the vulnerability still hasn’t been fixed.

Team Elite representatives claim that all the weaknesses they find on public websites are disclosed to their owners, which means that they must know of the flaw.

Now, we wait for the speech about how they take security seriously.

TELL US WHAT YOU THINK:

866 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Avast and Norman Websites Found Vulnerable to XSS Attacks

Kaspersky Store Presents XSS and Iframe Injection Vulnerability

Adobe Releases Hotfix for ColdFusion XSS Flaw

XSS Vulnerability Found in Google Code

City of Glendale Website Flaws Revealed by TeamDX (Exclusive, Updated)

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM