Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 1038637

Browse files
authored
Adding CVE
1 parent f2501d6 commit 1038637

File tree

1 file changed

+8
-5
lines changed

1 file changed

+8
-5
lines changed

cms/ovidentia/exploitXSSOvidentia.txt

Lines changed: 8 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -1,17 +1,20 @@
11
#-------------------------------------------------------
2-
# Exploit Title: Ovidentia CMS - Blind SQL Injection (Authenticated)
2+
# Exploit Title: Ovidentia CMS - XSS Ovidentia 8.4.3
3+
# The vulnerability permits any kind of XSS attacks. Reflected, DOM and Stored XSS.
34
# Date: 06/05/2019
5+
# [ CVE-2019-13977 ]
46
# Exploit Author:
5-
# Fernando Pinheiro (n3k00n3)
6-
# Victor Flores (UserX)
7+
# Fernando Pinheiro (n3k00n3)
8+
# Victor Flores (UserX)
79
# Vendor Homepage: https://www.ovidentia.org/
810
# Version: 8.4.3
911
# Tested on: Mac,linux - Firefox, safari
1012
# Download http://en.ovidentia.org/index.php?tg=fileman&sAction=getFile&id=17&gr=Y&path=Downloads%2FDistributions&file=ovidentia-8-4-3.zip&idf=893
11-
# [ Kitsun3Sec Research Group ]
13+
#
14+
# [ Kitsun3Sec Research Group ]
1215
#--------------------------------------------------------
1316

14-
POC
17+
POC
1518

1619
>========================================================
1720
Stored XSS

0 commit comments

Comments
 (0)