CAPEC 591 Reflected XSS

Stable Detailed High Risk
Severity Very High

Description

This type of attack is a form of Cross-Site Scripting (XSS) where a malicious script is \'reflected\' off a vulnerable web application and then executed by a victim's browser. The process starts with an adversary delivering a malicious script to a victim and convincing the victim to send the script to the vulnerable web application.

Attack Execution Flow

4

Mitigations

3

Consequences

Relationships

Resources Required

1