
CVE-2022-32074에 대한 개념 증명 익스플로잇으로, osTicket의 파일 목록 디렉토리에서 악성 SVG 파일 업로드를 통해 저장형 XSS를 입증합니다.
1. Find the file listing directory, the root of the file download directoryм (file_uploads (this is an example)).
2. Load the following xssPayload.svg and open it
예시:
