Skip to content

Instantly share code, notes, and snippets.

@s3d113
Last active December 15, 2022 22:03
Show Gist options
  • Save s3d113/bba63da007fcbe243615dd2a81690ffb to your computer and use it in GitHub Desktop.
Save s3d113/bba63da007fcbe243615dd2a81690ffb to your computer and use it in GitHub Desktop.
### Description
a reflected XSS vulnerability allows users to elevate their privilege to admin
### Researcher
Saad Aldawsari (@aldawsari_saad)
### Vulnerability Type
Cross-Site-Scripting (XSS)
### Vendor of Product
Things Board
### Affected Product Code Base
Things Board < 3.4.1
### Affected Component
Audit Log
### Attack Type
Remote
### Impact Information Disclosure
True
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment