| Issue: |
|
|---|---|
| Date: |
|
| Severity: | Medium |
| Requires Admin Access: | No |
| Fix Version: | 2.2 |
| Credit: | Constant Contact |
| Description: |
1. XSS in http://dotcms.constantcontact.com/c/portal_public/login XSS in http://dotcms.constantcontact.com/c/portal_public/login To reproduce, leave the my_account_logon param blank and set |
| Mitigation: |
Valid workarounds:
|
| References |
|