Burp Suite User Forum

Create new post

Web security academy lab

CM | Last updated: Jul 14, 2022 01:28PM UTC

Lab: DOM XSS in document.write sink using source location.search inside a select element. In this lab the inspect (Q) is not working means, the storedID where mentioned and selected after putting the string in Location.search parameter (storeID=abcd123) and pressed enter exactly but the down the string is not changed example: 1. Inspect = setected parameter of StoreID 2. location search :https://0a7600be037f6f04c0cd3e3e003d00bf.web-security-academy.net/product?productId=2&storeID=abcd123 <-- this i have typed and enter it but the result 3. this london not changed as abcd123--> London |check stock| browser i have used = Mozila Firefox

Michelle, PortSwigger Agent | Last updated: Jul 14, 2022 02:50PM UTC

Thanks for your message. Have you tried following along with the Community video solution? When you had issues using the query parameter were you using stored or storeID?

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.