.. / CVE-2022-26159

Exploit for Ametys CMS Information Disclosure (CVE-2022-26159)

Description:

Ametys CMS before 4.5.0 allows a remote unauthenticated attacker to read documents such as plugins/web/service/search/auto-completion/domain/en.xml (and similar pathnames for other languages) via the auto-completion plugin, which contain all characters typed by all users, including the content of private pages. For example, a private page may contain usernames, e-mail addresses, and possibly passwords.

Nuclei Template

View the template here CVE-2022-26159.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-26159.yaml
Copy

References:

https://github.com/p0dalirius/CVE-2022-26159-Ametys-Autocompletion-XML/
https://github.com/ARPSyndicate/cvemon
https://issues.ametys.org/browse/CMS-10973
https://podalirius.net/en/cves/2022-26159/
https://nvd.nist.gov/vuln/detail/CVE-2022-26159