Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

November 5th, 2011, 11:52 GMT · By Eduard Kovacs

BLOG

XSS Vulnerability Found in White House Website

SHARE:

Adjust text size:

The White House's website presented a vulnerability Enlarge picture - The White House's website presented a vulnerability
Alexander Fuchs and Benjamin Kunz Mejri from the Vulnerability Research Laboratory discovered a persistent script code injection vulnerability in the White House's official website.

The vulnerability, rated as a high security risk, affected the site's petition system. A successful exploitation of the weakness could have allowed an attacker to inject a malicious code, which may have led to things such as backend session hijacking, manipulation of profile content or defacement.

“The petition system is vulnerable. Every Petition i start or join will execute my code. I could join all petitions and my code will be executed on all users who visit the petition system,” Fuchs said, according to The Hacker News.

Fortunately, the issue was handled in a matter of days but after the latest incidents it turns out that the White House should really improve on their security before cybercriminals discover some other flaws.

TELL US WHAT YOU THINK:

1,373 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Air Force One Flight Plan Leaked in Japan

White Hat Hackers: Barack Obama's Website Vulnerable

Softpedia Exclusive Interview: Benjamin Kunz Mejri, Vulnerability Laboratory Founder

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM