Security researcher THE_MILLER, has submitted on 02/08/2008 a cross-site-scripting (XSS) vulnerability affecting maps.yandex.ru, which at the time of submission ranked 36 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 02/10/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 02/08/2008 |
Date published: 02/10/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: THE_MILLER |
Domain: maps.yandex.ru |
Category: XSS |
Pagerank: 36 |
URL: http://maps.yandex.ru/search-o.xml?text=%22%3E%3Cscript%3Ealert(/THE_MILLER/)%3C%2Fscript%3E%22%3E%3 Cscript%3E%3Cb%3Epidaraz%3 C%2Fb%3E%3C%2Fscript%3E%22%3E%3Cscript%3E%3Cb%3Epi daraz%3C%2Fb%3E%3C%2Fscript%3E&mapID=900&mapX=6234549&mapY=7279344&scale=3&slices=&distance=&traffic =&g=1.objects.20.10.&g=1.streets.20.200.&how=houses&asc=1 |
Click here to view the mirror
|
|
|