Nov
5th
XSSED.COM: Unreplicable XSS Vulnerability Reported By XSSED.COM Explicitly Patched On Info.Prevx.Com
Posted by: Chris Morris
We received an unsolicited email from XSSED.COM at 15:30 GMT today raising the possibility that a querystring parameter could be exploited to launch a malicious script by the caller to the download page. We were unable to replicate any script execution using the method reported by XSSED.COM, however, we have further tightened the validation of this page to explicitly avoid the example method quoted by XSSED.COM.

