Security researcher d3v1l, has submitted on 29/09/2010 a cross-site-scripting (XSS) vulnerability affecting live.vodafone.com.tr, which at the time of submission ranked 8945 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 01/10/2010. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 29/09/2010 |
Date published: 01/10/2010 |
Fixed? Mail us! | Status: UNFIXED |
Author: d3v1l |
Domain: live.vodafone.com.tr |
Category: XSS |
Pagerank: 8945 |
URL: http://live.vodafone.com.tr/galleryimages/watch.php?url=http://live.vodafone.com.tr/galleryimages/ro ckncoke/videos/rnc_video_03.flv&keepThis=true&TB_iframe=true&height="><script>alert(String.fromCharC ode(88,83,83))</script> |
Click here to view the mirror
|
|
|