Uploaded image for project: 'ZABBIX BUGS AND ISSUES'
  1. ZABBIX BUGS AND ISSUES
  2. ZBX-8111

XSS vulnerability in user names

    XMLWordPrintable

Details

    • Defect (Security)
    • Resolution: Fixed
    • Major
    • None
    • 2.2.3rc2, 2.3.0
    • Frontend (F)

    Description

      Create a user with alias "<script>alert('test')</script>". Go to the Administration -> Notifications page, an alert will be displayed there.

      This needs to be checked and fixed in all releases starting from 1.8.

      Attachments

        Activity

          People

            Unassigned Unassigned
            jelisejev Pavels Jelisejevs (Inactive)
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: