• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / infosec
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
home / News / XSS vulnerability on the SYRIZA official page

XSS vulnerability on the SYRIZA official page

30/01/2017 10:16 by Dimitris

Yes XSS on the official page of the ruling party. Following our announcement of the new facility Secleaks offered by SecNews.gr, we received a notice that is worth publishing. The sender of the vulnerability (as you will see in the first picture) is Nyo from the Greek Hacking Scene (GHS) team.syriza xss - XSS vulnerability on the official SYRIZA website

We also have the vulnerability links available to any interested manager who wants to resolve the issue.

See the images that show the vulnerability:

syriza - XSS vulnerability on the official SYRIZA website

syriza 1 - XSS vulnerability on the official SYRIZA website

For those who do not know:

Cross-site scripting or XSS refers to the exploitation of various vulnerabilities of computing systems by inserting HTML or Javascript into a site. A malicious user could enter code on a website through an entry text for example, which would not cause the site administrator or visitor to target the site because it would not be filtered by the site properly.

Example:

http://www.example.com/index.html?name=<script>alert("xss revealed")</script>

The malicious user could succeed:

Theft of passwords / accounts etc of personal data
Change website settings
Theft of cookies
Fake advertising (via, for example, a link)

Vulnerability refers to the weakness of the system that the site supports to filter and reject any harmful inputs.

SecNews.gr remains at the disposal of any interested party to solve the problem.

Definition of XSS from Wikipedia.

XSS vulnerability on the SYRIZA official page was last modified: 30 January, 2017, 12: 06 mm by Dimitris

Subscribe to our newsletter

no spam

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: Newstag: cookies, cross-site, greek, hacking, html, http, I'm sure, javascript, left-wing, name, scenes, scripting, XSS, team, problems

You May Also Like

The technique of a MAC flooding attack
Brave the first browser with Peer-to-Peer IPFS protocol
Do you have anything to post? Send it to Your Post

About Us Dimitris

Dimitris hates on Mondays .....

Previous Post: « Wallpaper contest of upcoming Ubuntu 17.04 (Zesty Zapus)
Next Post: The creator of Pac-Man died »

Reader Interactions

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loadingCancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.