Limited Black Friday Offer:
QCube Cross-Site-Scripting - XSS Vulnerability CVE-2020-24912 Scanner
Remote attacker can perform a reflected cross site scripting attack (XSS) by injecting malicious payload.
Short Info
Level
Medium
Type
Single Scan
Can be used by
Asset Owner
Estimated Time
10 sec
Scan only one
Url
Parent Category
QCube Cross-Site-Scripting - XSS Vulnerability CVE-2020-24912 Scanner Detail
A reflected cross-site scripting (XSS) vulnerability in qcubed (all versions including 3.1.1) in profile.php via the stQuery-parameter allows unauthenticated attackers to steal sessions of authenticated users.