CVE-2021-37152
MEDIUMSonatype Nexus Repository Manager 3.0.0-3.32.0 - Authenticated Stored Cross-Site Scripting via HTML File Upload
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-37152. PoCs published by SecurityAnalysts.
AI-analyzed exploit summary The repository contains a Python script that exploits CVE-2021-37152 by sending crafted packets to TP-LINK devices, enabling network access and preparing for a MITM attack. It includes functions for ARP, ICMP, TCP, and UDP scanning, as well as payload delivery.
Description
Multiple XSS issues exist in Sonatype Nexus Repository Manager 3 before 3.33.0. An authenticated attacker with the ability to add HTML files to a repository could redirect users to Nexus Repository Manager’s pages with code modifications.
Exploits (1)
The repository contains a Python script that exploits CVE-2021-37152 by sending crafted packets to TP-LINK devices, enabling network access and preparing for a MITM attack. It includes functions for ARP, ICMP, TCP, and UDP scanning, as well as payload delivery.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N