Security researcher PaPPy, has submitted on 15/11/2009 a cross-site-scripting (XSS) vulnerability affecting www.ua2go.com, which at the time of submission ranked 9137 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/07/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 15/11/2009 |
Date published: 07/07/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: PaPPy |
Domain: www.ua2go.com |
Category: XSS |
Pagerank: 9137 |
URL: http://www.ua2go.com/flifo/FlightDetail.do?airline=UA&fltNbr=100&orig=LAX&dest=DFW&date=20091115&sta mp=test'></a><script>alert(1);</script> |
Click here to view the mirror
|
|
|