.. / CVE-2021-22502

Exploit for Micro Focus Operations Bridge Reporter - Remote Code Execution (CVE-2021-22502)

Description:

Micro Focus Operations Bridge Reporter 10.40 is susceptible to remote code execution. An attacker can potentially execute malware, obtain sensitive information, modify data, and/or execute unauthorized operations without entering necessary credentials.

Nuclei Template

View the template here CVE-2021-22502.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2021/CVE-2021-22502.yaml
Copy

References:

https://www.zerodayinitiative.com/advisories/ZDI-21-153/
https://www.zerodayinitiative.com/advisories/ZDI-21-154/
https://softwaresupport.softwaregrp.com/doc/KM03775947
https://github.com/pedrib/PoC/blob/master/advisories/Micro_Focus/Micro_Focus_OBR.md
https://nvd.nist.gov/vuln/detail/CVE-2021-22502