mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 17:22:02 +00:00
775 B
775 B
CVE-2018-13849
Description
edit_requests.php in yTakkar Instagram-clone through 2018-04-23 has XSS via an onmouseover payload because of an inadequate XSS protection mechanism based on preg_replace.
POC
Reference
- https://cxsecurity.com/issue/WLB-2018070095
- https://cxsecurity.com/issue/WLB-2018070095
- https://www.exploit-db.com/exploits/45003/
- https://www.exploit-db.com/exploits/45003/
Github
No PoCs found on GitHub currently.