Files
CVEs-PoC/2020/CVE-2020-26563.md
T
2024-05-25 21:48:12 +02:00

740 B

CVE-2020-26563

Description

ObjectPlanet Opinio before 7.14 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query string. (There is also stored XSS if input to survey/admin/*.do is accepted from untrusted users.)

POC

Reference

Github