Skip to content

XSS Vulnerability in the port Parameter #410

Open
@4m3rr0r

Description

@4m3rr0r

Description: A reflected Cross-Site Scripting (XSS) vulnerability exists in the port parameter of WebSSH. This vulnerability allows an attacker to inject malicious JavaScript that will execute in the context of a victim’s browser, potentially allowing session hijacking, data theft, or other malicious actions.

Steps to Reproduce:

Visit the following URL:

https://webssh.huashengdun.org/?port=%3Cscript%3Ealert(%221%22)%3C/script%3E

Additional Information:

Affected parameter: port

Vulnerability type: Reflected XSS

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions