MOSEB-18: Vulnerability at

22:17 18.06.2007

Next participant of the project is Aport search engine. It is one of the popular Russian search engines.

The vulnerability is in Aport’s web search ( I already wrote about this vulnerability at This Cross-Site Scripting hole I found 12.09.2006, and informed vendor, but they still didn’t fix it.


The vulnerability is in r parameter:

Moral: looking for sites can be dangerous.

Leave a Reply

You must be logged in to post a comment.