Security researcher KVK, has submitted on 25/05/2011 a cross-site-scripting (XSS) vulnerability affecting start.facemoods.com, which at the time of submission ranked 324 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 15/06/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 25/05/2011 |
Date published: 15/06/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: KVK |
Domain: start.facemoods.com |
Category: XSS |
Pagerank: 324 |
URL: http://start.facemoods.com/?a=aaaaaaaaa.jsp/<script>alert('Vulnerable')</script>hi" or 1=1 --%3c/title%3e%3cscript%3ealert(%22xss%22)%3c/script%3e# |
Click here to view the mirror
|
|
|