Files
CVEs-PoC/2022/CVE-2022-4105.md
T
2024-05-25 21:48:12 +02:00

836 B

CVE-2022-4105

Description

A stored XSS in a kiwi Test Plan can run malicious javascript which could be chained with an HTML injection to perform a UI redressing attack (clickjacking) and an HTML injection which disables the use of the history page.

POC

Reference

Github

No PoCs found on GitHub currently.