S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2022-37153 Scanner

CVE-2022-37153 scanner - Cross-Site Scripting (XSS) vulnerability in Artica Proxy

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.4k
Times Used
continuous scan runs
5.5k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-37153
6.1
CVSS

An issue was discovered in Artica Proxy 4.30.000000. There is a XSS vulnerability via the password parameter in /fw.login.php.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Artica Proxy is a popular software solution that is utilized by businesses and organizations as a means to control and filter web traffic within their networks. This powerful tool enables administrators to monitor their network's traffic, block inappropriate content, and even apply content filtering policies. With its advanced features and user-friendly interface, Artica Proxy has become a go-to solution for a wide range of businesses and organizations worldwide.

However, despite its popularity, Artica Proxy has recently been identified as having a serious vulnerability. Known as CVE-2022-37153, this vulnerability is found within the 'fw.login.php' module and is classified as a Cross-Site Scripting (XSS) issue. This vulnerability allows attackers to inject malicious scripts into a website's code, which can compromise the end-user's web browser and potentially steal sensitive information.

When exploited, the CVE-2022-37153 vulnerability can lead to a wide array of consequences. Hackers can manipulate the victim's browser and access sensitive data, such as credit card numbers, passwords, and other personal information. Additionally, XSS vulnerabilities can also give hackers control of the victim's browser, allowing them to execute arbitrary code and launch additional attacks against the network or website.

Thanks to the pro features of the s4e.io platform, businesses and organizations can easily and quickly learn about vulnerabilities in their digital assets. By utilizing this powerful tool, administrators can stay up-to-date on the latest vulnerabilities and threats and take action to protect their network and end-users. With the added layer of protection, businesses and organizations can rest assured their digital assets are secure and protected from malicious attacks and exploitation.

 

REFERENCES

Solution Advice

To safeguard against this vulnerability and protect your network, there are several precautions that can be taken. The following are some bullet list items to consider:

  • Upgrade to the latest version of Artica Proxy. The vulnerability has been patched in the latest release (4.32.000000).
  • Implement web application firewalls (WAFs) and intrusion detection systems (IDSs) within your network.
  • Monitor network traffic and ensure all incoming and outgoing traffic is secured with SSL encryption.
  • Educate employees on the importance of web security and safe browsing practices.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.