Security researcher Sony, has submitted on 20/09/2010 a cross-site-scripting (XSS) vulnerability affecting de.truveo.com, which at the time of submission ranked 140653 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 17/02/2012. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 20/09/2010 |
Date published: 17/02/2012 |
Fixed? Mail us! | Status: UNFIXED |
Author: Sony |
Domain: de.truveo.com |
Category: XSS |
Pagerank: 140653 |
URL: http://de.truveo.com/search?query=%22%3E%3C%2Ftitle%3E%3Cscript%3Ealert%28%22xss+%22%29%3C%2Fscript% 3E%3Ciframe+src+%3Dhttp%3A%2F%2Fwww.youtube.com%2Fwatch%3Fv%3DwOCCgblEvcE%22+width%3D%221000%22+heig ht%3D%221000%22+\%3E%3C%2Fdiv%3E |
Click here to view the mirror
|
|
|