Files
CVEs-PoC/2020/CVE-2020-24912.md
T
2024-05-25 21:48:12 +02:00

872 B

CVE-2020-24912

Description

A reflected cross-site scripting (XSS) vulnerability in qcubed (all versions including 3.1.1) in profile.php via the stQuery-parameter allows unauthenticated attackers to steal sessions of authenticated users.

POC

Reference

Github