Security researcher PaPPy, has submitted on 03/06/2009 a cross-site-scripting (XSS) vulnerability affecting weather.mysanantonio.com, which at the time of submission ranked 12758 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 08/06/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 03/06/2009 |
Date published: 08/06/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: PaPPy |
Domain: weather.mysanantonio.com |
Category: XSS |
Pagerank: 12758 |
URL: http://weather.mysanantonio.com/auto/mysanantonio/radar/radblast.asp?zoommode=pan&prevzoom=zoom&num= 6&frame=0&delay=15&scale=0.250&noclutter=1&ID=EWX&type=N0R&showstorms=0&lat=0&lon=0&label=you&map.x= 400&map.y=240&scale=0.250¢erx=586¢ery=76&showlabels=1&rainsnow=0&lightning=0&lerror=20&num_s tns_min=2&num_stns_max=9999&avg_off=9999"></a><script>alert(1);</script> |
Click here to view the mirror
|
|
|