Sunday, March 13, 2011

Administrator privilege on any Blogger account

Gaining Administrative Privileges on any Account, 1337$ (Google Reward Program)

That vulnerability could be used by an attacker to get administrator privilege over any blogger account (Permission Issue)
HTTP Parameter Pollution vulnerability in Blogger that allow an attacker to add himself as an administrator on the victim's blogger account

Technical details:

The vulnerability mentioned here has been confirmed patched by the Google Security Team very fast

No comments: