Open
Description
Description: A reflected Cross-Site Scripting (XSS) vulnerability exists in the port parameter of WebSSH. This vulnerability allows an attacker to inject malicious JavaScript that will execute in the context of a victim’s browser, potentially allowing session hijacking, data theft, or other malicious actions.
Steps to Reproduce:
Visit the following URL:
https://webssh.huashengdun.org/?port=%3Cscript%3Ealert(%221%22)%3C/script%3E
Additional Information:
Affected parameter: port
Vulnerability type: Reflected XSS
Metadata
Metadata
Assignees
Labels
No labels