Report Email Alerts Open Bug Bounty: 189,091 coordinated disclosures
Total Vulnerabilities Fixed: 93,751
175,875 vulnerable websites, 16,717 VIP websites
4,270 security researchers, 5,694 notification subscribers

Open Bug Bounty ID

OBB-422908

Coordinated Vulnerability Disclosure

On the 19.11.2017 security researcher TAHA Helped patch 124 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 14 recommendations
reported a XSS vulnerability affecting the geonames.org website via the Open Bug Bounty coordinated vulnerability disclosure program.

We verified the vulnerability and independently confirmed its existence. Technical details of the vulnerability are currently hidden ("On Hold") to give website owner time to patch the vulnerability without putting any of its users at risk. If patched, vulnerability details can be publicly disclosed by the researcher in at least 30 days since submission, if unpatched - in at least 90 days since submission.

If you are the website owner or administrator please contact the researcher directly to get vulnerability details and proceed to coordinated disclosure.

Coordinated Disclosure Timeline

Vulnerability submitted via Open Bug Bounty19 November, 2017 01:09 GMT
Generic security notifications sent to website owner19 November, 2017 01:11 GMT
Notification sent to subscribers (without technical details)19 November, 2017 02:17 GMT

geonames.org Profile:

General

Alexa Rank40572
VIP website statusYes
Check geonames.org for malware:Click here

Description

GeoNames.

User Comments:

Please login via twitter to be the first one to comment.


Latest Vulnerabilities on *.geonames.org

OBB-ID Reported by Status Reported on
On Hold
19.11.2017
patched
14.01.2017
patched
30.09.2016
patched
14.09.2015
patched
18.07.2015

Latest Vulnerabilities Reported by TAHA

OBB-ID Vulnerability Status Reported
On Hold
15.12.2017
On Hold
15.12.2017
On Hold
15.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
14.12.2017
On Hold
13.12.2017
On Hold
13.12.2017
On Hold
13.12.2017


LATEST VIP SUBMISSIONS

putlocker.co
Reported by eb Helped patch 1003 vulnerabilities
Received 7 Coordinated Disclosure badges
Received 26 recommendations
on 15.12.2017
letswatchseries.ac
Reported by eb Helped patch 1003 vulnerabilities
Received 7 Coordinated Disclosure badges
Received 26 recommendations
on 15.12.2017
pantip.com
Reported by TAHA Helped patch 124 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 14 recommendations
on 15.12.2017
barato.ir
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017
aport.ru
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017
kraloyun.com
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017
getyourguide.com
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017
posttoday.com
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017
beszamolok.com
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017
novy.tv
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 15.12.2017



LATEST SUBMISSIONS

sktmembership.co.kr
Reported by OmniGooch Helped patch 1700 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 16.12.2017
beltz.de
Reported by OmniGooch Helped patch 1700 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 16.12.2017
mydrinks.cz
Reported by milan_kyselica Helped patch 2 vulnerabilities
Received 0 Coordinated Disclosure badges
on 16.12.2017
booksofasia.com
Reported by egyptghost Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 16.12.2017
pagandom.ru
Reported by OmniGooch Helped patch 1700 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 16.12.2017
kirov.ru5.info
Reported by OmniGooch Helped patch 1700 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 16.12.2017
kemerovo-online.ru
Reported by OmniGooch Helped patch 1700 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 16.12.2017
architekten-verzeichnis.ch
Reported by Mr_R3boot Helped patch 43 vulnerabilities
Received 2 Coordinated Disclosure badges
on 16.12.2017
vaposhop.it
Reported by OmniGooch Helped patch 1700 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 16.12.2017
guidaffari.ilsole24ore.com
Reported by Mr_R3boot Helped patch 43 vulnerabilities
Received 2 Coordinated Disclosure badges
on 16.12.2017