Security researcher skathgh420, has submitted on 07/09/2008 a cross-site-scripting (XSS) vulnerability affecting www.hellobc.com, which at the time of submission ranked 76804 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 22/09/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 07/09/2008 |
Date published: 22/09/2008 |
Fixed? Mail us! | Status: UNFIXED |
Author: skathgh420 |
Domain: www.hellobc.com |
Category: XSS |
Pagerank: 76804 |
URL: http://www.hellobc.com/en-CA/SearchResults/BritishColumbia.htm?q=%3Cscript%3Ealert(%22iBlaze%22)%3C% 2fscript%3E&ie=utf8&site=TBCCW&output=xml_no_dtd&client=TBCCW&lr=&oe=utf8&requiredfields=CW_PAGE_TYP E%3aContent|CW_PAGE_TYPE%3aAccommodation|CW_PAGE_TYPE%3aNonAccomProduct&getfields=CW_PAGE_TYPE.Descr iption.ProductSummary.BCEscapes&ip=&access=&start=0&filter=0&restrict=NA|NA_PROD |
Click here to view the mirror
|
|
|