Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

February 22nd, 2012, 08:41 GMT · By Eduard Kovacs

BLOG

Vulnerabilities Found in Microsoft’s MSN Solutions Center and AdCenter Service

SHARE:

Adjust text size:

Microsoft’s MSN Solutions Center and AdCenter Service contain XSS vulnerabilities Enlarge picture - Microsoft’s MSN Solutions Center and AdCenter Service contain XSS vulnerabilities
Ucha Gobejishvili, the white hat known as longrifle0x, identified cross-site scripting (XSS) vulnerabilities in Microsoft’s MSN Solutions Center and in their AdCenter Service.

According to the expert, the security holes he discovered could allow an attacker to hijack a session and even steal the user’s account, but for this to happen a certain degree of user interaction is required.

The vulnerabilities were disclosed to Microsoft’s Security Response Center and are currently being investigated. Stay tuned to find out if and when Microsoft addresses these issues.

Other flaws identified by the researcher include some found on the sites of Apple, Forbes, MTV, Google, Ferrari, Myspace, NASA, ESA, and Sun.

He also took part in our interview series called Hackers around the world where he offered some interesting details about his findings and his career.
FILED UNDER:
Microsoft
XSS
longrifle0x

TELL US WHAT YOU THINK:

838 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


XSS Vulnerability Found in Google, Forbes, Myspace, MTV and Ferrari

Hackers Around the World: No Flaws Escape This Georgian’s Longrifle0x

Researcher Finds XSS Flaws in Java, Nero and Sun Websites

Space Related Websites Found Vulnerable by Longrifle0x

Security Vulnerabilities Fixed in FAA.Gov and Oracle Solutions

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM