exploit-db-mirror/exploits/jsp/webapps/22857.txt
Offensive Security 36c084c351 DB: 2021-09-03
45419 changes to exploits/shellcodes

2 new exploits/shellcodes

Too many to list!
2021-09-03 13:39:06 +00:00

5 lines
No EOL
447 B
Text

source: https://www.securityfocus.com/bid/8074/info
It has been reported that the K2 Toolkit does not sufficiently sanitize input by users. Because of this, it may be possible for an attacker to launch an attack that results in the execution of hostile HTML or script code in the browsers of users that have loaded a malicious link created by the attacker.
http://www.example.com/[search].jsp?[query]=><img src=javascript:alert(document.cookie)>