Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Zenaio-xss #1

Open
anh91 opened this issue Jul 26, 2023 · 0 comments
Open

Zenaio-xss #1

anh91 opened this issue Jul 26, 2023 · 0 comments

Comments

@anh91
Copy link
Owner

anh91 commented Jul 26, 2023

Summary
hi team,
I found a small Stored XSS

Info

Zenario 9.4

Step 1:
Login to account https://demo.zenar.io/admin
image

Step 2:
In the tab menu click on event and create a new event
image

Step 3:
Inject payload to Menu navigation text, choice menu note menu (simple choice account ), and save the event
image

Step 4:
Go to Menu navigation and click on account. And move the mouse to the event then the payload is executed
image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant