@SuperSl1nk announced via Twitter that he had found multiple vulnerabilities in Kaspersky’s official site (my.kaspersky.com). The vulnerability he shared on Twitter was a DOM based XSS on the support page of Kaspersky’s site.
You can view his tweet here:
https://twitter.com/SuperSl1nk/status/286399899640152064
Some other proof and info on the servers:
62.213.110.57 hips.kaspersky-labs.com ESMTP Sendmail 8.14.4/8.14.4 62.213.110.44 sget3.kaspersky-labs.com ESMTP Sendmail 8.14.4/8.14.4 80.239.174.50 mailgate.kaspersky.com ESMTP service ready 91.103.66.248 relay4.kaspersky-labs.com ESMTP Postfix 91.103.66.249 mailhub4.kaspersky-labs.com ESMTP Postfix 212.5.89.209 websvn.kaspersky-labs.com ESMTP Sendmail 8.14.4/8.14.3