Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

January 7th, 2013, 09:32 GMT · By

BLOG

SQL Injection, XSS Vulnerabilities Found on the Site of Islami Bank Bangladesh

SHARE:

Adjust text size:


Islami Bank Bangladesh website found to be vulnerable Enlarge picture - Islami Bank Bangladesh website found to be vulnerable
The websites of financial institutions are not always as secure as they should be. A perfect example is the public site of Islami Bank Bangladesh – the pioneer of Islamic banking in Bangladesh – which has been found to contain SQL Injection and cross-site scripting (XSS) vulnerabilities.

The security holes have been identified by a Tunisian hacker that goes by the name of “Human Mind Cracker.”

The expert has told EHN that the SQL Injection flaw could be leveraged to gain access to a database containing user email addresses, encrypted passwords, administrator login credentials and other details.

The XSS vulnerability has been found to plague the feedback page of the Islami Bank Bangladesh’s website.

The hacker claims to have attempted to report the security holes to the financial institution on numerous occasions, but they haven’t responded to any of his reports and neither of the bugs has been addressed.

TELL US WHAT YOU THINK:

1,150 hits · 1 comment · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


XSS Vulnerability in HostGator India Affects over One Million Websites

Zynga Fixes XSS and SQL Injection Vulnerabilities on “With Friends” Website

XSS and Cookie Handling Vulnerabilities Identified on HTC Website

Researcher Finds XSS Vulnerabilities in cPanel & WHM 11.34 – Video

Microsoft Fixes DOM XSS Flaw in Surface Domain After Being Notified by Expert

READER COMMENTS:


Comment #1 by: miko on 08 Jan 2013, 04:42 UTC reply to this comment

The best thay can do is using GreeSQL

Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM