Security researcher ironzorg, has submitted on 24/04/2008 a cross-site-scripting (XSS) vulnerability affecting extsearch.worldbank.org, which at the time of submission ranked 5079 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 28/04/2008. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
| Date submitted: 24/04/2008 |
Date published: 28/04/2008 |
Fixed? Mail us! | Status: UNFIXED |
| Author: ironzorg |
Domain: extsearch.worldbank.org |
Category: XSS |
Pagerank: 5079 |
URL: http://extsearch.worldbank.org/servlet/SiteSearchServlet?qUrl=&qSubc=wbg&ed=french&txtnullalert=Pour +lancer+une+recherche+veuillez+entrer+un+mot+ou+sélectionner+une+option.&q=asshole%22%3Balert%28123 %29%3B+var+VariAble%3D%22asshole |
|
Click here to view the mirror
|
|
|
|