Question

62
Views
BKrishna Member since 2018 25 posts
e-Pragati
Posted: 3 months ago
Last activity: 3 months 1 week ago

How to fix Cross Site Scripting(XSS) security issue in URL?

Please find attached word document which contains screenshots. 

Step 1: Access the URL and inject the xss payload in URL.

https://preprod-myXX.XXXXX.in/prweb/sso1/ex7EeZQhwqVsPcJXG37rCQ%5B%5B*/…

Step 2: Injecting javascript code in the url.

Result: javascript code is seen resulting in a pop up showing xss vulnerability

Thanks,

Pega Platform 7.3.1 Low-Code App Development System Administration Technology Services Senior System Architect
Share this page LinkedIn