.. / CVE-2022-2174

Exploit for microweber 1.2.18 - Cross-site Scripting (CVE-2022-2174)

Description:

Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.2.18.

Nuclei Template

View the template here CVE-2022-2174.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-2174.yaml
Copy

References:

https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-2174
https://github.com/microweber/microweber/commit/c51285f791e48e536111cd57a9544ccbf7f33961
https://www.tenable.com/cve/CVE-2022-2174
https://huntr.dev/bounties/ac68e3fc-8cf1-4a62-90ee-95c4b2bad607/
https://nvd.nist.gov/vuln/detail/CVE-2022-2174