Security researcher TheBig, has submitted on 14/03/2009 a cross-site-scripting (XSS) vulnerability affecting parks.lacounty.gov, which at the time of submission ranked 36271 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 26/03/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 14/03/2009 |
Date published: 26/03/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: TheBig |
Domain: parks.lacounty.gov |
Category: XSS |
Pagerank: 36271 |
URL: http://parks.lacounty.gov/Parkinfo.asp?URL=cms1_033252.asp&Title=%22%3E%3C/title%3E%3Cscript%3Ealert (document.cookie)%3C/script%3E%3Cscript%3Ealert(%22XSS%20BY%20THEBIG%22)%3C/script%3E |
Click here to view the mirror
|
|
|