Bug Type: Stored XSS Vulnerability
Browser: Internet Explorer 7 or less
Vulnerable Module: Markup Helper : https://www.google.com/webmasters/markup-helper/
Status :Wont Fix .
The actual web application code is being hosted on .
Now lets open the iframe src url in Internet Explorer 7 . The stored XSS payload gets fired.