3DSecure 2.0 3DS Authorization Challenge Cross Site Scripting

Discussion in 'News Aggregator' started by Packet Storm, 13 Sep 2024.

  1. Packet Storm

    Packet Storm Guest

    Multiple reflected cross site scripting vulnerabilities exist in the 3DS Authorization Challenge of 3DSecure version 2.0. These flaws allow attackers to inject arbitrary web scripts, CSS, or HTML through the manipulation of the params parameter in the request URL.

    Continue reading...
     

Share This Page

Loading...