Cross-site Scripting (XSS) - Reflected in falconchristmas/fpp
Valid
Reported on
Jun 2nd 2021
✍️ Description
Reflected XSS in proxies.php when a user asked to add a proxy, resulting in XSS.
🕵️♂️ Proof of Concept
https://drive.google.com/file/d/14uabBenjA_DBpzWbbYq_iF8a9FU2fzhX/view?usp=sharing
payload: ' onmouseover='alert(1)
💥 Impact
This vulnerability is capable of doing Reflected XSS.
to join this conversation