XSS via Email

Disclosed: 2014-04-21 16:11:30 By prakharprasad To respondly
Unknown
Vulnerability Details
This one was easy. Someone needs send an email with **Subject** line : *"><img src=x onerror=alert(document.cookie);>* to the team email, mine was **[email protected]** So once the email arrives it will execute Javascript (See attachment)
Actions
View on HackerOne
Report Stats
  • Report ID: 7919
  • State: Closed
  • Substate: resolved
  • Upvotes: 3
Share this report