Security researcher DoMy94, has submitted on 12/09/2009 a cross-site-scripting (XSS) vulnerability affecting store.vodafone.it, which at the time of submission ranked 1240 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 12/09/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 12/09/2009 |
Date published: 12/09/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: DoMy94 |
Domain: store.vodafone.it |
Category: XSS |
Pagerank: 1240 |
URL: https://store.vodafone.it/otms2/?item=3141&payment_description=<script>alert(document.cookie)</scrip t>&merchantParam=ORDER%3DEUIT0909-780243097242918%26METHOD%3DbrokerPayment&m=IT&l=it&operatorId=14 |
Click here to view the mirror
|
|
|