XSS on https://███████/██████████ parameter

Disclosed: 2022-04-07 19:57:11 By homosec To deptofdefense
Medium
Vulnerability Details
PoC ``` https://███████/███ ``` Pameter 'xxslots' must be invalid Payload ```xss%22%20tabindex%3d1%20autofocus%20onfocus%3d%22alert()``` ███████ ## Impact XSS on https://███████/ ## System Host(s) ██████████ ## Affected Product(s) and Version(s) ## CVE Numbers ## Steps to Reproduce Go to ```XSS on https://██████/██████████``` ## Suggested Mitigation/Remediation Actions
Actions
View on HackerOne
Report Stats
  • Report ID: 1252229
  • State: Closed
  • Substate: resolved
  • Upvotes: 1
Share this report