Security researcher holisticinfosec, has submitted on 29/02/2008 a cross-site-scripting (XSS) vulnerability affecting ross-simons.com, which at the time of submission ranked 52074 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 06/03/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 29/02/2008 |
Date published: 06/03/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: holisticinfosec |
Domain: ross-simons.com |
Category: XSS |
Pagerank: 52074 |
URL: http://ross-simons.com/rs/search.jsp?freeText=%22%3E%3CSCRIPT%3Ealert%28%27XSS_Alert%27%29%3C%2FSCRI PT%3E&special_upref:=oseg=SAVINGS&history=h1|special_upref:~oseg=SAVINGS^freeText~"><SCRI PT>ALERT('XSS_ALERT')</SCRIPT>^prodPage~15^page~SEARCH+NAV^uan0~Source^uav0~Canne d^uan1~Offer^uav1~SAVINGS |
Click here to view the mirror
|
|
|