CVE-2022-45472
MEDIUMCAE LearningSpace Enterprise - DOM-Based Cross-Site Scripting via ontouchmove and onpointerup
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-45472. PoCs published by nicbrinkley.
AI-analyzed exploit summary This repository contains a writeup describing a DOM-based XSS vulnerability (CVE-2022-45472) in CAE Learning Space Enterprise with Intuity License (Image Version: 267r, Patch Level: 639). The writeup details the discovery process, impact, and recommendations but does not include exploit code.
Description
CAE LearningSpace Enterprise (with Intuity License) image 267r patch 639 allows DOM XSS, related to ontouchmove and onpointerup.
Exploits (1)
This repository contains a writeup describing a DOM-based XSS vulnerability (CVE-2022-45472) in CAE Learning Space Enterprise with Intuity License (Image Version: 267r, Patch Level: 639). The writeup details the discovery process, impact, and recommendations but does not include exploit code.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N