MyKopi-O! [ID] Reflected XSS

2019-02-06 / 2019-02-05
id FA Haxor (ID) id
Risk: Low
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

# Impact : ############################################################################################## Cross-site scripting is a flaw that allows users to inject HTML or JavaScript code into a page enabling arbitrary input. There are two main variants of XSS, stored and reflected. Stored XSS allows an attacker to embed a malicious script into a vulnerable page, which is then executed when a victim views the page. ############################################################################################## # Reflected XSS ############################################################################################## # Site : http://mykopio.id/ #Vuln : http://mykopio.id/report/ Write on Note your own payloads : # <script>alert(document.cookie);</script> # <h1> XSS by FA Haxor Thank's to all inj3t0r and Indonesia Haxor

References:

More Referention :
https://youtu.be/puDM3ESPFwA


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top