We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
An unsafe deserialization vulnerability allows any unauthenticated user to execute arbitrary code on the server.
Message
Testing<br><h1>HTML</h1><br><h2>Injection</h2>
Summary
An unsafe deserialization vulnerability allows any unauthenticated user to execute arbitrary code on the server.
PoC
https://www.admidio.org/demo_en/adm_program/modules/messages/messages.php
Message
field, enter the following payloadTesting<br><h1>HTML</h1><br><h2>Injection</h2>
Impact