Testing for CSS Injection (OTG-CLIENT-005)

Brief Summary
aaa

Description of the Issue
aaa

code here

Black Box testing and example
Blackbox testing for XXX is not usually performed since access to the source code is always available as it needs to be sent to the client to be executed.

Gray Box testing and example
Testing for XXX vulnerabilities: For example, looking at the following URL: XXX

The HTML code will contains the following script:

XXX aaa