Reflected XSS on [█████████]
Medium
U
U.S. Dept Of Defense
Submitted None
Actions:
Reported by
saajanbhujel
Vulnerability Details
Technical details and impact analysis
## Summary:
Hi security team members,
I found a reflected XSS on the URL
## Impact
1. An attacker can steal the victim's cookies.
2. An attacker can execute JS code.
## System Host(s)
█████
## Affected Product(s) and Version(s)
## CVE Numbers
## Steps to Reproduce
1. Navigate to this link:- https://██████████/██████=%3C/script%3E%3Cscript%3Ealert(document.domain)%3C/script%3E
2. Then, it will execute.
## Suggested Mitigation/Remediation Actions
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Cross-site Scripting (XSS) - Reflected