Security researcher Renoized, has submitted on 31/08/2007 a cross-site-scripting (XSS) vulnerability affecting it.search.yahoo.com, which at the time of submission ranked 1 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 31/08/2007. It is currently fixed. |
Date submitted: 31/08/2007 |
Date published: 31/08/2007 |
Date fixed: 06/09/2007 | Status: FIXED |
Author: Renoized |
Domain: it.search.yahoo.com |
Category: XSS |
Pagerank: 1 |
URL: http://it.search.yahoo.com/search;_ylt=A0geunQjW9dGQpYA0xUbDQx.?p=http%3A%2F%2Fwww.huifa.cl%2Fbuscad or%2Fbuscar.php%3F%26cod_rubro%3D%26cb%3D%26criterio%3D%3C%2Ftitle%3E%3Ch1%3E%3Cmarquee%3Exss.here-x ss.here-xss.here-xss.here-xss.herexss.here-xss.here-xss.here-xss.here-xss.here%3C%2Fmarquee%3E%3C%2F h1%3E%3Ctitle%3E&ei=UTF-8&fr=sfp&x=wrt&meta=vl%3D |
Click here to view the mirror
|
|
|