Loading HuntDB...

Reflected XSS Vulnerability in SVG File at area-resources-stg.autodesk.com

Medium
A
Autodesk
Submitted None

Team Summary

Official summary from Autodesk

A reflected cross-site scripting (XSS) vulnerability was found on files stored on an Autodesk AREA server, which could have allowed an attacker to inject malicious JavaScript code when viewed by users. Autodesk has fixed the vulnerability and we thank @ahmednasr1 for reporting this issue.

Reported by ahmednasr1

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Cross-site Scripting (XSS) - Stored