.. / CVE-2022-32430

Exploit for Lin CMS Spring Boot - Default JWT Token (CVE-2022-32430)

Description:

An access control issue in Lin CMS Spring Boot v0.2.1 allows attackers to access the backend information and functions within the application.

Nuclei Template

View the template here CVE-2022-32430.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-32430.yaml
Copy

References:

https://github.com/TaleLin/lin-cms-spring-boot
https://nvd.nist.gov/vuln/detail/CVE-2022-32430
https://web.archive.org/web/20220721190946/https://www.mesec.cn/archives/277