Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2022-3942 — Proof-of-concept for CVE-2022-3942: stored XSS in Sanitization Management System v1.0 enabling cookie theft via crafted payload in Remarks/Address fields. | Kitploit
Tools/GitHubGitHub/maikroservice/cve-2022-3942
Vulnerability AnalysisExploitationWeb Application ExploitationInformation GatheringWeb SecurityPenetration Testing
GitHubmaikroservice/cve-2022-3942

CVE-2022-3942

Proof-of-concept for CVE-2022-3942: stored XSS in Sanitization Management System v1.0 enabling cookie theft via crafted payload in Remarks/Address fields.

View Repository
3 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2022-3942

Cross Site Scripting in Sanitization Management System

Description: A cross-site scripting (XSS) vulnerability in Sanitization Management System v1.0 allows potential attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Remarks or Address Fields of the Request Quote Form. As soon as the logged-in staff or admin user opens the quote the XSS is triggered - coupled with the fact that the cookie has no HttpOnly Flag this could be used to steal cookies of logged-in users.

How to Reproduce: XSS_CVE_2022-3942

Form submission request opened cookies stolen
Download Tool