This article analyzes XSS vulnerabilities in OJS (Open Journal Systems) and develops a model for protecting against these attacks. It discusses different types of XSS attacks, vulnerabilities in OJS, methods of detecting them, and potential consequences for system security. The article describes a specific vulnerability that can be exploited to inject malicious code through user input of specially generated data. Based on the analysis, a protection model is developed, which includes the introduction of restrictions for vulnerable fields, encoding, and filtering of data before displaying it on the page. This article is essential for OJS administrators and developers to ensure high security and protection against potential XSS attacks.
JavaScript jest wyłączony w Twojej przeglądarce internetowej. Włącz go, a następnie odśwież stronę, aby móc w pełni z niej korzystać.