Lucene search

K
huntrP0cas4EB6D581-338C-4FF7-850D-733194D6C3A8
HistoryDec 05, 2021 - 9:22 a.m.

Cross-site Scripting (XSS) - Reflected in admidio/admidio

2021-12-0509:22:52
p0cas
www.huntr.dev
11

0.007 Low

EPSS

Percentile

80.7%

Description

The Reflected XSS vulnerability occurs because redirect.php does not properly validate the value of the url parameter. Using javascript: throws an error in parsing the url. But I bypassed it using javascript://%0A.

Proof of Concept

1. Open the https://www.admidio.org/demo_en/adm_program/system/redirect.php?url=javascript://%250aalert(document.domain)
2. If you click the `here`, you can see that occur a xss!

Impact

Through this vulnerability, an attacker is capable to execute malicious scripts.

0.007 Low

EPSS

Percentile

80.7%

Related for 4EB6D581-338C-4FF7-850D-733194D6C3A8