• Icon: Bug Bug
    • Resolution: Fixed
    • Icon: High High
    • 2.5.6
    • 2.5.4
    • None
    • Standalone

      Description:
      XSS via the "startsWith" field in pages/listpages-alphaview.action.

      Exploit:

      http://app/pages/listpages-alphaview.action?key=&startsWith=xss:<script>alert(document.cookie)</script>

              Unassigned Unassigned
              b1e07ee35f09 Gergely Hodicska
              Affected customers:
              2 This affects my team
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: