Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-39195 PoC — L-Soft LISTSERV 跨站脚本漏洞

Source
Associated Vulnerability
Title:L-Soft LISTSERV 跨站脚本漏洞 (CVE-2022-39195)
Description:L-Soft LISTSERV是L-Soft公司的一套电子邮件列表管理软件。 LISTSERV 17版本存在跨站脚本漏洞,该漏洞源于web界面中存在跨站点脚本(XSS)漏洞。攻击者利用该漏洞通过c参数注入任意JavaScript或HTML。
Description
LISTSERV 17 web interface contains a cross-site scripting vulnerability. An attacker can inject arbitrary JavaScript or HTML via the "c" parameter, thereby possibly allowing the attacker to steal cookie-based authentication credentials and launch other attacks.
File Snapshot

id: CVE-2022-39195 info: name: LISTSERV 17 - Cross-Site Scripting author: arafatansari severi ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.