Uploaded image for project: 'Confluence Data Center'
  1. Confluence Data Center
  2. CONFSERVER-33685

Stored XSS in OnDemand Confluence Header via username

    XMLWordPrintable

Details

    Description

      This is from an external report. Creating a user with username:

      "><img src=x onerror=prompt(1)>
      

      and returning to the dashboard will demonstrate the script injection. This PoC will not work in Chrome/Chromium, but will in Firefox and other browsers that do not have such protective measures.

      Attachments

        1. Delete_Space.png
          Delete_Space.png
          147 kB
        2. demo.png
          demo.png
          271 kB

        Issue Links

          Activity

            People

              vvo Vu Truong Vo (Inactive)
              e42e3b5ff479 Yogendra Sharma
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: