Security researcher PaPPy, has submitted on 29/05/2009 a cross-site-scripting (XSS) vulnerability affecting www.us.hsbc.com, which at the time of submission ranked 2137 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 29/05/2009. It is currently fixed. |
Date submitted: 29/05/2009 |
Date published: 29/05/2009 |
Date fixed: 25/06/2009 | Status: FIXED |
Author: PaPPy |
Domain: www.us.hsbc.com |
Category: XSS |
Pagerank: 2137 |
URL: http://www.us.hsbc.com/1/2/!ut/p/kcxml/04_Sj9SPykssy0xPLMnMz0vM0Y_QjzKLN4o3N3QGSZnFm8Qbm-pHoggZxDsiR Hw98nNT9YP0vfUD9AtyQyPKHR0VAfo3fys!/delta/base64xml/L0lDU0lKQ1RPN29na21DU1Evb0tvUUFBSVFnakZJQUFRaENF SVFqR0VKemdBIS80SkZpQ28wZWgxaWNvblFWR2hkLXNJZDJFQSEhLzdfMl9EUkgvMS9zYS5kZWZhdWx0LWNvbW1hbmQ!?sq=%22% 3B+alert(1)%3B+%2F%2F&st=1&stype=html#7_2_DRH |
Click here to view the mirror
|
|
|