Security researcher Azat Harutyunyan, has submitted on 12/06/2008 a cross-site-scripting (XSS) vulnerability affecting europe.mapquest.com, which at the time of submission ranked 178 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 15/06/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 12/06/2008 |
Date published: 15/06/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: Azat Harutyunyan |
Domain: europe.mapquest.com |
Category: XSS |
Pagerank: 178 |
URL: http://europe.mapquest.com/directions/offers.adp?2a=&2c=&2s=&2z=&2y=US&2pn=&1a=&1c=&1s=&1z=&did=&qq= hltF3hzNT9tNhURP0HLlhh9UYBmHRqyBceg4Gkon14D8uewLk7pjHQ%3d%3d&spurl=1&cat=VacationPackages&typegpl=21 1&nbn="><script>alert(1)</script>&nbc=&nc=&nst=&q=&qc="><script>alert(1)</script>&1y=US&1pn=&qpc= |
Click here to view the mirror
|
|
|