Exploit Title: Symantec SiteMinder WebAgent v12.52 - Cross-site scripting (XSS)Google Dork: N/ADate: 18-06-2023Exploit Author: Harshit JoshiVendor Homepage: https://community.broadcom.com/homeSoftware Link: https://www.broadcom.com/products/identity/siteminderVersion: 12.52Tested on: Linux, WindowsCVE: CVE-2023-23956Security Advisory: https://support.broadcom.com/external/content/SecurityAdvisories/0/22221 Description: I am writing to report two XSS vulnerabilities (CVE-2023-23956) that I havediscovered in the Symantec SiteMinder WebAgent. The vulnerability isrelated to the improper handling of user input and has
The critical vulnerability disclosed last week in Java logging package log4j sent shockwaves throughout the industry given how frequently that open-sour.