This Proof of Concept (PoC) demonstrates the exploitation of the CVE-2024-4367 vulnerability, which involves Cross-Site Scripting (XSS) attacks.# CVE-2024-4367-PoC
This Proof of Concept (PoC) demonstrates the exploitation of the CVE-2024-4367 vulnerability, which involves Cross-Site Scripting (XSS) attacks.
# Features
This PoC collects and displays the following types of information:
## 1. General Information:
- Domain
- Title
- Current URL
- Referrer URL
- Cookies associated with the domain
## 2. Browser Environment Information:
- LocalStorage and SessionStorage data
- User Agent
- Screen resolution
- Platform (Operating System)
## 3. Web Features:
- Cookies enabled/disabled
- Do Not Track status
- Max touch points (e.g., for mobile devices)
- Connection type (e.g., 4G, WiFi)
- Battery level (if available)
## 4. Screen Information:
- Screen resolution
- Color depth
- Available width and height
- Orientation of the screen
## 5. Geolocation and Performance:
- Geolocation availability
- Device memory (if available)
- Hardware concurrency (number of processor cores)
## 6. WebRTC and Plugins:
- Detection of WebRTC IP leakage
- Installed browser plugins
- Available languages for the browser
# sample of PoC






Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view