Cross Site Scripting in Hostinger
Hello Viewers,this is my first write up of Bug Bounty POC. I’ve created this blog to share my Vulnerabilities,bugs and experience with you all.so in the first write up i’ll show you how i found the easy and minor Cross Site Scripting in Hostinger, So Let’s start it.
Hostinger is a free web hosting services provider and domain registrar.
Reproduction Steps :
1- Go to https://cpanel.hostinger.in/auth
2- Login to your account
3- Go to my profile and click on edit profile
4- Now change your name and set it to cross site scripting payload (“><img src=x onerror=prompt(2);>).
5- Click save changes and payload will be executed
Cross Site Scripting in Hostinger :