thegooglecodearchive / allforgood

Automatically exported from code.google.com/p/allforgood
0 stars 0 forks source link

XSS problem #613

Closed GoogleCodeExporter closed 9 years ago

GoogleCodeExporter commented 9 years ago
What steps will reproduce the problem?
1.Goto 
http://www.allforgood.org/search#q=%3Cscript%3Ealert%28document.cookie%29%3C/scr
ipt%3E&num=10&start=1&vol_loc=Bergen%2C%20Hordaland&distance=25&type=all&sort=sc
ore&timeperiodstart=start%20date&timeperiodend=end%20date&cache=1
2. Wait in some seconds.

What is the expected output? What do you see instead?

A output of the user cookies

Please provide any additional information below.
By Cim Stordal
S3curity.net

Original issue reported on code.google.com by CimStordal on 9 Aug 2011 at 8:52

GoogleCodeExporter commented 9 years ago
complete

Original comment by mt1...@gmail.com on 12 Sep 2011 at 1:21