4.7 이하의 HelpSystems Cobalt Strike에서 원격 공격자가 Cobalt Strike teamserver에서 HTML을 실행할 수 있게 하는 XSS(Cross Site Scripting) 취약점이 발견되었습니다. 이 취약점을 악용하려면 먼저 Cobalt Strike 페이로드를 검사한 다음 페이로드의 username 필드를 수정해야 합니다(또는 추출한 정보로 새 페이로드를 만든 다음 해당 username 필드를 비정상적인 형식이 되도록 수정해야 합니다).
4.7 이하의 HelpSystems Cobalt Strike에서 원격 공격자가 Cobalt Strike teamserver에서 HTML을 실행할 수 있게 하는 XSS(Cross Site Scripting) 취약점이 발견되었습니다. 이 취약점을 악용하려면 먼저 Cobalt Strike 페이로드를 검사한 다음 페이로드의 username 필드를 수정해야 합니다(또는 추출한 정보로 새 페이로드를 만든 다음 해당 username 필드를 비정상적인 형식이 되도록 수정해야 합니다).
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
An XSS (Cross Site Scripting) vulnerability was found in HelpSystems Cobalt Strike through 4.7 that allowed a remote attacker to execute HTML on the Cobalt Strike teamserver. To exploit the vulnerability, one must first inspect a Cobalt Strike payload, and then modify the username field in the payload (or create a new payload with the extracted information and then modify that username field to be malformed).