Tuesday, March 23, 2010

Capgemini CTO Blog Cross-Site Scripting (XSS)


+++About Capgemini+++
A global leader in consulting, technology, outsourcing, and local professional services (http://www.capgemini.com/about/)

+++Affected URL(s)+++
http://www.capgemini.com/ctoblog/search_blog.php

+++Vulnerable Parameter / Function+++
'Search'

+++PoC+++



Capgemini Ist Notified: February 18, 2010
Capgemini IInd Notification: March 02, 2010
Response Received: March 02, 2010
Detailed Info Emailed: March 03, 2010
Current Status: Fixed (As of today, March 23, 2010)

Thanks to Richard Fahey @capgemini for his quick response on resolving this issue.

Best Regards.

No comments:

Post a Comment

Disclaimer

The views, information & opinions expressed in this blog are my own and do not reflect the views of my current or former employers or employees or colleagues.