Security researcher THE-SH0CK-B0Y, has submitted on 27/05/2007 a cross-site-scripting (XSS) vulnerability affecting shopping.aol.com, which at the time of submission ranked 55 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 30/05/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 27/05/2007 |
Date published: 30/05/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: THE-SH0CK-B0Y |
Domain: shopping.aol.com |
Category: XSS |
Pagerank: 55 |
URL: http://shopping.aol.com/ppesearch/ppsearch?&k=%22%3E%3Cscript%3Ealert(%2F%5C'THE-SH0CK-B0Y-www.rooti ngforced.org%5C'%2F)%3C%2Fscript%3E |
Click here to view the mirror
|
|
|