Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
OpenNebula-CVE-2025-56534 — Stored XSS exploit for OpenNebula 6.10.0.1 via custom authenticator driver, with proof-of-concept payload and fix guidance for upgrading to version 7.0. | Kitploit
Tools/GitHubGitHub/markartamonov/opennebula-cve-2025-56534
Vulnerability AnalysisExploitationWeb Application ExploitationWeb SecurityPenetration Testing
GitHubmarkartamonov/opennebula-cve-2025-56534

OpenNebula-CVE-2025-56534

Stored XSS exploit for OpenNebula 6.10.0.1 via custom authenticator driver, with proof-of-concept payload and fix guidance for upgrading to version 7.0.

View Repository

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
3 months agoNot yet reviewed

OpenNebula-CVE-2025-56534

Exploit Title : OpenNebula 6.10.0.1 - Stored XSS (Cross-site Scripting) in the custom authenticator driver
Exploit Author : Mark Artamonov
Vendor Homepage : https://opennebula.io/
Tested Version : OpenNebula 6.10.0.1
Affected Versions : OpenNebula < 7.0
Affected Component : opennebula-sunstone
CVE ID : CVE-2025-56534

Description:

A stored cross-site scripting (XSS) vulnerability in the custom authenticator driver of opennebula v6.10.0.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

Payload :

root@kitploit:~
<image src =q onerror=prompt(8)>

Proof of Concept :

изображение
изображение

Fix :

Upgrade to OpenNebula >=7.0.

Download Tool