Security researcher C1c4Tr1Z, has submitted on 29/04/2008 a cross-site-scripting (XSS) vulnerability affecting sportsauthority.shoplocal.com, which at the time of submission ranked 857 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 20/06/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 29/04/2008 |
Date published: 20/06/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: C1c4Tr1Z |
Domain: sportsauthority.shoplocal.com |
Category: XSS |
Pagerank: 857 |
URL: http://sportsauthority.shoplocal.com/sportsauthority/default.aspx?action=nuep&redirect=%22%3E%3Cscri pt%3Ealert(%27Another%20%22Hacker%20Safe%22%20web%20with%20no%20safety..%20XSS%20by%20C1c4Tr1Z%27)%3 C/script%3E&Sniff=50&postback=true&CityStateZip=%22%3E&Go=Go&submit.x=0&submit.y=0 |
Click here to view the mirror
|
|
|