
Cobaltstrike RCE Vulnerability CVE-2022-39197 Reproduction
Vulnerability Brief
This vulnerability exists in the Cobalt Strike Beacon software and may allow an attacker to set a malformed username in the Beacon configuration, triggering XSS, which can lead to remote code execution on the Cobalt Strike server.
Screenshot:

Obtain NTLMv2-SSP Hash, provided Cobalt Strike is running on Windows
References:
https://www.freebuf.com/vuls/345522.html
https://forum.butian.net/share/708