Skip to content

XSS-Vulnerability #98

@MRH4287

Description

@MRH4287

I just noticed a strange behaviour.
I added an Entry to Redis with the following Key:

<global>:....

When i opened PhpRedmin, i only saw :....

When opened in Dev-Tools i saw this:
image

This can be used for XSS-Attacks.

I am using the Docker Version:
Docker 17.03.1-ee-2 on linux, amd64
Image ID: sha256:3d3d15923fbb4e52dda1d6c53643b0d1ff584fa08b845c51f3bba7e7fb964a80

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions