Home / vulnerabilitiesPDF  

Google XXE Injection

Posted on 22 February 2014
Source : packetstormsecurity.org Link

 

Hi All,

There was an XML external entity vulnerability within Googles Public
data explorer. This was submitted to Google as part of their Bug Bounty
Program.

For the full write up with screen shots -
http://www.securatary.com/vulnerabilities

--
All the best

Mark Litchfield
http://www.securatary.com
Twitter - http://twitter.com/securatary

 

TOP