CVE-2024-4367-PoC
This Proof of Concept (PoC) demonstrates the exploitation of the CVE-2024-4367 vulnerability, which involves Cross-Site Scripting (XSS) attacks.
Features
This PoC collects and displays the following types of information:
- Domain
- Title
- Current URL
- Referrer URL
- Cookies associated with the domain
- LocalStorage and SessionStorage data
- User Agent
- Screen resolution
- Platform (Operating System)
3. Web Features:
- Cookies enabled/disabled
- Do Not Track status
- Max touch points (e.g., for mobile devices)
- Connection type (e.g., 4G, WiFi)
- Battery level (if available)
- Screen resolution
- Color depth
- Available width and height
- Orientation of the screen
- Geolocation availability
- Device memory (if available)
- Hardware concurrency (number of processor cores)
6. WebRTC and Plugins:
- Detection of WebRTC IP leakage
- Installed browser plugins
- Available languages for the browser
sample of PoC





