Security researcher PaPPy, has submitted on 18/05/2009 a cross-site-scripting (XSS) vulnerability affecting www.aa.com, which at the time of submission ranked 1258 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 15/10/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 18/05/2009 |
Date published: 15/10/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: PaPPy |
Domain: www.aa.com |
Category: XSS |
Pagerank: 1258 |
URL: http://www.aa.com/aa/i18nForward.do?locale=es_US&searchString=%20&p=/utility/siteMap/siteMap.jsp&p=/ utility/siteMap/siteMap.jsp&toggleSubmitButton=%22><iframe%20src%3D%22http://google.com |
Click here to view the mirror
|
|
|