Domanda di colloquio di Microsoft

Define Stored XSS

Risposta di colloquio

Anonimo

3 gen 2021

A stored XSS attack only requires that the victim visit the compromised web page. No need for them to click on any links. This increases the reach of the attack, and just the act of visiting the website is sufficient. A classic example is embedding HTML tags in the comments section like: