Security researcher KrepTOr, has submitted on 20/06/2008 a cross-site-scripting (XSS) vulnerability affecting buscar.telefonica.es, which at the time of submission ranked 17042 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 05/11/2008. It is currently fixed. |
Date submitted: 20/06/2008 |
Date published: 05/11/2008 |
Date fixed: 10/11/2008 | Status: FIXED |
Author: KrepTOr |
Domain: buscar.telefonica.es |
Category: XSS |
Pagerank: 17042 |
URL: http://buscar.telefonica.es/jsp/CDoResult.jsp?QUERYTYPE=32&QUERYTXT=%22%3E%3Cscript%3Ealert(/XSS/)%3 C/script%3E&QUERYLEVEL=1&SESION=a&IQUERY=0&NOMLIB=tel_colombia_lib|salaprensa_lib&CONTENIDO=&IDIOM=r w_spanish&FILEINI=&SALADEPRENSA=&PAIS=CO&AND=&OR=&BEGIN=&EXACT=&FECHAINI=&FECHAFIN=&PESO=&EXP=&NOT=& PDF=&FILE_LAN= |
Click here to view the mirror
|
|
|