CVE-2022-38553
MEDIUM NUCLEIAcademy Learning Management System <5.9.1 - XSS
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-38553. PoCs published by 4websecurity. A Nuclei detection template is also available.
AI-analyzed exploit summary This repository provides a functional proof-of-concept for CVE-2022-38553, demonstrating a stored XSS vulnerability in the 'ACADEMY Learning Management System' via the 'search?query' parameter. The PoC includes a payload and a video demonstration.
Description
Academy Learning Management System before v5.9.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Search parameter.
Exploits (1)
This repository provides a functional proof-of-concept for CVE-2022-38553, demonstrating a stored XSS vulnerability in the 'ACADEMY Learning Management System' via the 'search?query' parameter. The PoC includes a payload and a video demonstration.
Nuclei Templates (1)
http.html:"study any topic, anytime"
body="study any topic, anytime"
References (5)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N