Security researcher Mudkip, has submitted on 09/04/2011 a Redirect vulnerability affecting images.ask.com, which at the time of submission ranked 50 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 11/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 09/04/2011 |
Date published: 11/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: Mudkip |
Domain: images.ask.com |
Category: Redirect |
Pagerank: 50 |
URL: http://images.ask.com/fr?q=asd&desturi=http://xssed.com&initialURL=http%3A%2F%2Fwww.ask.com%2Fpictur es%3Fqsrc%3D167%26o%3D0%26l%3Ddir%26q%3Dasd%26v%3D14&fm=i&ac=113&fsel=2&ftURI=http%3A%2F%2Fimages.as k.com%2Ffr%3Fq%3Dasd%26desturi%3Dhttp%253A%252F%252Fphotos.jahiel.net%252Fv%252Fgraham%252Fwsis2003% 252Fexhibitionfloor%252Fasd.jpg.html%26imagesrc%3Dhttp%253A%252F%252Fphotos.jahiel.net%252Fd%252F414 62-2%252Fasd.jpg%26thumbsrc%3Dhttp%253A%252F%252Fmedia5.picsearch.com%252Fis%253FZeETpE4dEsQQtaMUDjR -3VdtJfYoKRTDRXWZJe7plP8%26o%3D0%26l%3Ddir%26thumbuselocalisedstatic%3Dfalse%26thumbwidth%3D128%26th umbheight%3D96%26fn%3Dasd.jpg%26imagewidth%3D640%26imageheight%3D480%26fs%3D77%26f%3D2%26fm%3Di%26fs el%3D2%26ftbURI%3Dhttp%253A%252F%252Fwww.ask.com%252Fpictures%253Fq%253Dasd%2526page%253D1%2526o%253 D0%2526l%253Ddir%2526pstart%253D&qt=0 |
Click here to view the mirror
|
|
|