Ok, first of all thanks to Highlander for the link, I found it intresting reading and it definately demonstrates typical behaviour of a company when confronted with a problem like this.
As for the views regarding full-disclosure, I agree on all but the smaller details. I feel its nessacary to highlight the action I have taken before making this post as it would seem alot of people presume that I have jumped straight in at the deep end and just thrown it out there without any kind of consideration before hand.
I had sent them 2 emails with a good spacing of time between them (2-3 weeks), neither of which yielded a response, I then more recently tried to contact a more neutral party whom i have previously mentioned, they also ignored me.
Now either everybodies spam filter is turned on or someone thinks im joking or they simply don't care. The way I see it im trying to do them a favour and they're making it very difficult, I've even heard from a 3rd party that he phoned them and had a conversation with someone who claimed they were in the server room, however from the details elaborated it would seem that who ever it was, was more concerned about customers finding out than patching. Infact even as i write this the problem still exists and I find myself inclined to send yet another email just to try see if I can get any form of response.
As you correctly noted I do have a somewhat negative opinion of them, but this is more a result of how they've handled this situation than a motive for how it came about.
Thanks for the Feedback
-Gammarays