1b.app
Link copied -

xss vulnerability

Good afternoon!
Maxim Miroshnichenko, please participate in the discussion on this task
Description of the problem from our admins in the attachment.
Original question is available on version: ru

Answers:

Sergey, thank you very much.
I pass it on to Ustimenko and his team, if everything is confirmed, they will fix it in MVP and OS.
27.08.2021, 12:23
Как со мной связаться - никак :)
Задавайте вопросы на форуме публично - и я отвечу.
Подробнее - https://1b.app/ru/user/11/
Original comment available on version: ru

Good afternoon. There is no problem in the fact that you yourself looked at the cookies. If you find a place where you can see my cookies, that's already a problem. Is there such a place?
27.08.2021, 12:30
Original comment available on version: ru

For example, you can give me any link leading to https://crm.ohholding.com.ua/dashboard/?your script and tell me what I need to do next. I promise to switch to it and you will try to steal something from me. Under something to steal, I mean some important information using which you can go under my access to the admin panel, for example
27.08.2021, 13:28
Original comment available on version: ru

Please join the conversation. If you have something to say - please write a comment. You will need a mobile phone and an SMS code for identification to enter. Log in and comment