Dark C0d3rs

Full Version: HackerOne Disclosed Reports - 2025-12-19
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Logo
Medium
resolved

RXSS in https://jp.mcafee.com/apps/mdm/jp/3.0_asp/


Bug reported by Adrián was disclosed at December 19, 2025, 11:04 am   |   Cross-site Scripting (XSS) - Reflected

A cross-site scripting (XSS) vulnerability was discovered in You are not allowed to view links. Register or Login to view.. The vulnerability was verified in Chrome 87 and Firefox. The vulnerability allowed execution of arbitrary JavaScript code by injecting it into the website's URL.