Adobe Groups Profile Hacked using XSS(cross site Scripting) by Sony

A hacker known as Sony hacked Adobe Groups profile using the XSS(Cross Site Scripting) vulnerability. The XSS is persistent type, means "if you insert files, it will
be there permanently.  It will be shown to all users". So hackers are able to steal cookies using that.

Vulnerability Information:
  • Vulnerability Type: XSS.
  • Persistent: Yes .
  • STATUS: Unfixed.
  • Hacked By: Hacker named as "Sony".
  • Defacement: Defaced the Profile Page, not main page.
Proof of Vulnerability:

