Security researcher Python 5, has submitted on 24/01/2007 a cross-site-scripting (XSS) vulnerability affecting vitrine.shoptime.com.br, which at the time of submission ranked 4025 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 03/02/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 24/01/2007 |
Date published: 03/02/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Python 5 |
Domain: vitrine.shoptime.com.br |
Category: XSS |
Pagerank: 4025 |
URL: http://vitrine.shoptime.com.br/apollo/vitrine.do?method=show&lojaPrincipal=&areaName=busca&nomeLoja= &tipoLoja=&tipoBusca=comFoto&fetch=30&loja=&palavra=%22%3E%27%3E%3CSCRIPT%3Ealert%28String.fromCharC ode%2884%2C69%2C83%2C84%2C69%29%29%3C%2FSCRIPT%3E&x=80&y=20 |
Click here to view the mirror
|
|
|