Sunday, March 13, 2011

Administrator privilege on any Blogger account

Gaining Administrative Privileges on any Blogger.com Account, 1337$ (Google Reward Program)

That vulnerability could be used by an attacker to get administrator privilege over any blogger account (Permission Issue)
HTTP Parameter Pollution vulnerability in Blogger that allow an attacker to add himself as an administrator on the victim's blogger account


Technical details:

http://www.nirgoldshlager.com



The vulnerability mentioned here has been confirmed patched by the Google Security Team very fast

No comments: