Bitcoin Forum

Other => Archival => Topic started by: Boris007 on June 22, 2020, 02:07:17 AM



Title: --
Post by: Boris007 on June 22, 2020, 02:07:17 AM
--


Title: Re: [mohfw Bangladesh] vulnerable to XSS
Post by: Little Mouse on June 22, 2020, 02:21:47 AM
Hi, thank you for the heads up.
I'm in contact with cyber 71 facebook group and I believe through that, I can bring the issue to the eye of the authority. I have no idea what's happening here also, I have seen your other bug reporting of stake. Thank you again.


Title: Re: [mohfw Bangladesh] vulnerable to XSS
Post by: bob123 on June 22, 2020, 11:01:04 AM
And again..

A completely worthless reflected XSS.
Did you even realize that the connection is not secured by TLS? Do you really think they care about a reflected XSS when they already don't care about security at all ?

Do you have the permission from the owner of the website and the hoster to check for vulnerabilities?
Why did you publicly post it instead of responsibly disclose it to the owner ?