Cisco ASA | Cisco VPN XSS 2021| /+CSCOE+/
Chirag Artani Chirag Artani
9.84K subscribers
2,540 views
0

 Published On Jun 24, 2021

PoC for XSS in Cisco ASA CVE-2020-3580 - it can be very helpful in bug bounty & VDP's.
Dork: inurl:/+CSCOE+/ site:in , site:com

POST /+CSCOE+/saml/sp/acs?tgname=a

Huge thanks & credit:   / 1408050644460650502   (You can get payload from there, I can't put that in description).

About Cisco VPN:

Cisco Systems VPN Client is a software application for connecting to virtual private networks based on Internet Key Exchange version 1. On July 29, 2011, Cisco announced the end of life of the product. No further product updates were released after July 30, 2012, and support ceased on July 29, 2014.


Thanks!

show more

Share/Embed