Limited Black Friday Offer:
Security for everyone

QCube Cross-Site-Scripting - XSS Vulnerability CVE-2020-24912 Scanner

Remote attacker can perform a reflected cross site scripting attack (XSS) by injecting malicious payload.

SCAN NOW

Short Info


Level

Medium

Type

Single Scan

Can be used by

Asset Owner

Estimated Time

10 sec

Scan only one

Url

Parent Category

QCube Cross-Site-Scripting - XSS Vulnerability CVE-2020-24912 Scanner Detail

A reflected cross-site scripting (XSS) vulnerability in qcubed (all versions including 3.1.1) in profile.php via the stQuery-parameter allows unauthenticated attackers to steal sessions of authenticated users.