Exploits Explained Stored HTML Injection That Leads to Domain Account Takeover
A Synack Red Team member discovered a cross-site scripting vulnerability in SAP Concur Open.
The Exploits Explained series features technical vulnerability insights from the elite security researchers on the Synack Red Team. It offers a vetted forum for this global community of hackers to share the discovery of real-world vulns and offer tips for uncovering common exploit paths.