Reflected XSS Vulnerability in SVG File at area-resources-stg.autodesk.com
Medium
A
Autodesk
Submitted None
Team Summary
Official summary from Autodesk
A reflected cross-site scripting (XSS) vulnerability was found on files stored on an Autodesk AREA server, which could have allowed an attacker to inject malicious JavaScript code when viewed by users. Autodesk has fixed the vulnerability and we thank @ahmednasr1 for reporting this issue.
Actions:
Reported by
ahmednasr1
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Cross-site Scripting (XSS) - Stored