Cross Site Scripting (XSS) Checkup - Security Vulnerabilities & Prevention

Learn about Cross Site Scripting (XSS) vulnerabilities and how to perform an effective XSS checkup. Discover best practices to prevent XSS attacks and secure your website or application against malicious exploits.

rimiroy74449
@rimiroy74449
219 views

<% String eid = request.getParameter("eid"); %> ... Employee ID: <%= eid %>

 

Show Alert Message those who access page link

<META HTTP-EQUIV="refresh" CONTENT="0;url=data:text/html;base64,PHNjcmlwdD5hbGVydCgndGVzdDMnKTwvc2NyaXB0Pg">

https://getbootstrap.com/docs/4.6/getting-started/introduction/

XSS Using Script in Attributes

XSS attacks may be conducted without using <script>...</script> tags. Other tags will do exactly the same thing, for example: <body onload=alert('test1')> or other attributes like: onmouseover, onerror.

onmouseover

<b onmouseover=alert('Wufff!')>click me!</b>

onerror

<img src="http://url.to.file.which/not.exist" onerror=alert(document.cookie);>

Comments

Please login to participate in discussion. Login
🚀 TutorliV Mobile App

One App.
Every Learning Experience.

Discover teachers, prepare for competitive exams, read quality articles, attempt mock tests and build your own learning identity from one powerful platform.

Find verified teachers nearby
Attempt unlimited mock tests
Daily Current Affairs & Study Notes
Create your own teaching page
Nearby Teacher
2.3 km Away
Mock Tests
25,000+
⭐ 4.9 Rating

🎯 Popular Topics

Explore the most searched educational topics.

🚀 Find Jobs by State & Department

Explore Sarkari Jobs, Admit Cards & Results easily on TutorliV

🔥 Popular Job Categories