Taiwan-Tech-WebSec / Bug-Report

4 stars 0 forks source link

B10815054之漏洞回報 #66

Closed LegalCheng closed 2 years ago

LegalCheng commented 2 years ago

攻擊者學號:B10809023 @LegalCheng

被攻擊者學號與網址:B10815054 @Danielh9016 https://demo.b10815054.works/

漏洞類型:XSS(title)

漏洞描述: 標題可注入script

Poc: <script>alert(1)</script>

螢幕擷取畫面 2022-04-30 151611 螢幕擷取畫面 2022-04-30 151652

splitline commented 2 years ago

dup with #44