Stored XSS on items in Folder in nilsteampassnet/teampass lead to ATO in nilsteampassnet/teampass
Valid
Reported on
May 7th 2023
Description
Stored XSS on items in Folder in nilsteampassnet/teampass lead to ATO
Proof of Concept
POC on my Drive video: https://drive.google.com/file/d/1OsksHJxcaNNABIoabL_AwAKCu37S2VyT/view?usp=sharing
Impact
Administrator view List User and script triggered, attacker can use a script send cokkie to burp collaborator or attacker server on Internet, lead to Account Takeover. Attacker can do everything an administrator can do it.
We are processing your report and will contact the
nilsteampassnet/teampass
team within 24 hours.
4 months ago
We have contacted a member of the
nilsteampassnet/teampass
team and are waiting to hear back
4 months ago
The researcher's credibility has increased: +7
The fix bounty has been dropped
This vulnerability has been assigned a CVE
Thank you
The researcher's credibility has slightly increased as a result of the maintainer's thanks: +1
to join this conversation