Reflected XSS on error message on Login Page

Disclosed: 2024-05-03 18:06:08 By kurogai To deptofdefense
Medium
Vulnerability Details
Greetings! I've found a reflected XSS on a login page on█████ . The vulnerable link is: `https://███████/users/login?error=<img src='x' onerror="alert(document.domain)">` █████████ ## Impact An attacker can inject crafted javascript that can steal user cookies, impersionate, steal information, deface the website and redirect user to another domain ## System Host(s) ██████████ ## Affected Product(s) and Version(s) ## CVE Numbers ## Steps to Reproduce Access `https://██████/users/login?error=<img src='x' onerror="alert(document.domain)">` ## Suggested Mitigation/Remediation Actions Sanitize the output with htmlspecialchars();
Actions
View on HackerOne
Report Stats
  • Report ID: 2417864
  • State: Closed
  • Substate: resolved
  • Upvotes: 37
Share this report