mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
1.0 KiB
1.0 KiB
CVE-2022-28368
Description
Dompdf 1.2.1 allows remote code execution via a .php file in the src:url field of an @font-face Cascading Style Sheets (CSS) statement (within an HTML input file).
POC
Reference
Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Henryisnotavailable/Dompdf-Exploit-RCE
- https://github.com/That-Guy-Steve/CVE-2022-28368-handler
- https://github.com/k0mi-tg/CVE-POC
- https://github.com/manas3c/CVE-POC
- https://github.com/nomi-sec/PoC-in-GitHub
- https://github.com/rvizx/CVE-2022-28368
- https://github.com/whoforget/CVE-POC
- https://github.com/x00tex/hackTheBox
- https://github.com/youwizard/CVE-POC