When using XSS in Wireless LANs, a displaying errors occurs #8157

Closed
opened 2025-12-29 20:33:10 +01:00 by adam · 2 comments
Owner

Originally created by @ghost on GitHub (Jun 2, 2023).

NetBox version

v3.5.0

Python version

3.8

Steps to Reproduce

  1. Create Wireless LAN with name/SSID of <svg/onload=alert(1)>
  2. Going to add a new Wireless Interface to a device
  3. Click on Select Wireless LANs

Expected Behavior

Expected to see the name <svg/onload=alert(1)>

Observed Behavior

A "blank box" is shown.

1685660492dkF9BDxCleZO0dThK54ubfYWo8s6ZYT0vxUPKmTlyHkr9DV8
Originally created by @ghost on GitHub (Jun 2, 2023). ### NetBox version v3.5.0 ### Python version 3.8 ### Steps to Reproduce 1. Create Wireless LAN with name/SSID of `<svg/onload=alert(1)>` 2. Going to add a new Wireless Interface to a device 3. Click on `Select Wireless LANs` ### Expected Behavior Expected to see the name `<svg/onload=alert(1)>` ### Observed Behavior A "blank box" is shown. <img width="459" alt="1685660492dkF9BDxCleZO0dThK54ubfYWo8s6ZYT0vxUPKmTlyHkr9DV8" src="https://github.com/netbox-community/netbox/assets/50374560/73814921-9d8b-4f7a-b7b1-debb5f5e866a">
adam added the type: bugstatus: duplicate labels 2025-12-29 20:33:10 +01:00
adam closed this issue 2025-12-29 20:33:10 +01:00
Author
Owner

@ghost commented on GitHub (Jun 2, 2023):

Addendum

Image of the dialog box, when I selected the SSID.

1685661116Lv2QWsXC68FmOM683g6fo0joyRTgX4Q6pBbcl5IDsYIFVDwx 1685661274sP2e9VbBndqV5LEzSVeFcjlYbIBFlvOLt8crJb4guqsEseUU
@ghost commented on GitHub (Jun 2, 2023): _Addendum_ Image of the dialog box, when I selected the SSID. <img width="448" alt="1685661116Lv2QWsXC68FmOM683g6fo0joyRTgX4Q6pBbcl5IDsYIFVDwx" src="https://github.com/netbox-community/netbox/assets/50374560/7cc1760f-8bd4-466d-89e0-e768481d472d"> <img width="325" alt="1685661274sP2e9VbBndqV5LEzSVeFcjlYbIBFlvOLt8crJb4guqsEseUU" src="https://github.com/netbox-community/netbox/assets/50374560/0ff114fb-8c14-41fd-820f-4f41391da074">
Author
Owner

@kkthxbye-code commented on GitHub (Jun 2, 2023):

Duplicate of https://github.com/netbox-community/netbox/issues/12745

Please remember to search before opening an issue.

@kkthxbye-code commented on GitHub (Jun 2, 2023): Duplicate of https://github.com/netbox-community/netbox/issues/12745 Please remember to search before opening an issue.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: starred/netbox#8157