.. / CVE-2022-30777

Exploit for Parallels H-Sphere 3.6.1713 - Cross-Site Scripting (CVE-2022-30777)

Description:

Parallels H-Sphere 3.6.1713 contains a cross-site scripting vulnerability via the index_en.php ‘from’ parameter.

Nuclei Template

View the template here CVE-2022-30777.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-30777.yaml
Copy

References:

https://medium.com/%40bhattronit96/cve-2022-30777-45725763ab59
https://nvd.nist.gov/vuln/detail/CVE-2022-30777
https://github.com/ARPSyndicate/cvemon
https://medium.com/@bhattronit96/cve-2022-30777-45725763ab59
https://en.wikipedia.org/wiki/H-Sphere