CWE-85: Doubled Character XSS Manipulations
VariantDraft
The web application does not filter user-controlled input for executable script disguised using doubling of the involved characters.
View on MITREBack to CWE Lookup
Technical Details
- Structure
- Simple
Applicable To
Not Language-Specific