Report Email Alerts Open Bug Bounty: 153,509 coordinated disclosures
Total Vulnerabilities Fixed: 74,771
150,955 vulnerable websites, 15,489 VIP websites
3,733 security researchers, 5,214 notification subscribers

Open Bug Bounty ID

OBB-204443

vvo-online.de Security Vulnerability

On the 08.01.2017 security researcher k0t Helped patch 265 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 5 recommendations
disclosed XSS vulnerability affecting vvo-online.de website.

On our side, we have notified website owner via all reasonable communication channels about the vulnerability, so it can be patched as quickly as possible.

You can check if the vulnerability is patched by clicking on the verification link below. If you have any contacts with the website administrator or a person in charge of its security - please send him, or her, this link as soon as possible.

Vulnerability Details


vvo-online.de Description

VVO-Navigator - Ihr Mobilitätsportal für Dresden und die Region. Verkehrsverbund Oberelbe. Ein Ticket. Alles fahren. Tickets, Tarif, Fahrplan, Serviceangebote und Freizeittipps. Mit Bus und Bahn in Dresden und die Region. InfoHotline 0351 852 65 55.

Vulnerable URL:

https://www.vvo-online.de/de/fahrplan/aktuelle-abfahrten-ankuenfte/abf ahrten?stopid=8071395973&date=04.12.2016&time=10:05&arrival=false&mot= HailedSharedTaxi?"><svg/onload=alert(/OPENBUGBOUNTY/)>

Other details:

Patched:No
Check for patch: Verify now



Latest check for patch:28.07.2017
Vulnerability type:XSS
Vulnerability status:Publicly disclosed
Alexa Rank407306
VIP website status:No
Check vvo-online.de for malware:Click here
Check vvo-online.de SSL connection:Click here (Grade: A) Refresh Results

Mirror: Click here to view the mirror

Coordinated Disclosure Timeline

Vulnerability submitted via Open Bug Bounty8 January, 2017 16:37 GMT
Generic security notifications sent to website owner8 January, 2017 16:39 GMT
Vulnerability details disclosed by researcher2 April, 2017 17:14 GMT

User Comments:

Please login via twitter to be the first one to comment.


Latest Vulnerabilities on *.vvo-online.de

OBB-ID Reported by Status Reported on
unpatched
08.01.2017
unpatched
08.12.2016
On Hold
04.12.2016

Latest Vulnerabilities Reported by k0t

OBB-ID Vulnerability Status Reported
On Hold
20.09.2017
On Hold
20.09.2017
On Hold
20.09.2017
On Hold
19.09.2017
On Hold
19.09.2017
On Hold
19.09.2017
On Hold
19.09.2017
On Hold
07.09.2017
On Hold
07.09.2017
On Hold
31.08.2017
On Hold
31.08.2017
On Hold
21.08.2017
On Hold
18.08.2017
On Hold
18.08.2017
patched
14.08.2017
On Hold
14.08.2017
On Hold
14.08.2017
On Hold
14.08.2017
On Hold
13.08.2017
On Hold
13.08.2017


LATEST VIP SUBMISSIONS

univie.ac.at
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
heinonline.org
Reported by Geek_Pwn Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 24.09.2017
kasikornbank.com
Reported by M0r3h4x Helped patch 62 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 1 recommendations
on 24.09.2017
workshop.utk.edu
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 24.09.2017
konami.com
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 24.09.2017
thule.com
Reported by MiguelSantareno Helped patch 58 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 10 recommendations
on 24.09.2017
deporvillage.com
Reported by MiguelSantareno Helped patch 58 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 10 recommendations
on 24.09.2017
theculturetrip.com
Reported by MiguelSantareno Helped patch 58 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 10 recommendations
on 24.09.2017
verizon.com
Reported by AbdeOuabala Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 1 recommendations
on 24.09.2017
brickset.com
Reported by SonnySpooks Helped patch 463 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 24.09.2017



LATEST SUBMISSIONS

texsim.pl
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
ecoportal.su
Reported by Chris5389 Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 25.09.2017
centerondisability.org
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
library.dha.gov.ae
Reported by Chris5389 Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 25.09.2017
curtaincallentertainment.ca
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
leparc.asso.fr
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
retromoderndesign.com
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
datalib.net
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
outreach.eurosites.info
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017
f10products.co.uk
Reported by mcurietribute Helped patch 3 vulnerabilities
Received 0 Coordinated Disclosure badges
Received 1 recommendations
on 25.09.2017