Issue metadata
Sign in to add a comment
|
Security: XSS in TrustPilot.com
Reported by
orthonvi...@gmail.com,
Sep 12 2016
|
||||||||||||||||||
Issue descriptionHello team, There is a website caled trustpilot.com,which gives the reviews for websites.it is giving reviews to google.com website also,where we can trigger our payload to effect the site internally via trustpilot. steps to reproduce: 1.go to url:https://www.trustpilot.com/evaluate/www.google.com 2.now insert the payload : "/><svg/onload=prompt(1)> "/><img src=x onerror=prompt(1)> into the "write your review"box. 3.you can see the payload get triggered. 4.whenever a user of google is clicking the review of that attacker xss gets executed-it is the "STORED XSS" 5. It would be impossible to get XSS to the frontpage, but it is possible to inject the payload to your internal tools via trustpilot.So this can also effect the google internally i recently reported this issue to other website which is effected by trustpilot internally,they also confirmed after investigating that this can effect their website internally via trustpilot.I was not able to show my report because it is not yet disclosed yet. let me know if information is required.thanks!
,
Sep 12 2016
This is not an issue with the Chromium browser. If you feel this affects Google properties then please report it via https://goo.gl/vulnz This bug will automatically be re-restricted after 14 weeks so you should disclose anything before then.
,
Dec 20 2016
This bug has been closed for more than 14 weeks. Removing security view restrictions. For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot |
|||||||||||||||||||
►
Sign in to add a comment |
|||||||||||||||||||
Comment 1 by elawrence@chromium.org
, Sep 12 2016