Skip to content

Commit 38d8d35

Browse files
committed
Update doc
1 parent 6e0c945 commit 38d8d35

File tree

1 file changed

+1
-0
lines changed

1 file changed

+1
-0
lines changed

documentation/modules/exploit/linux/http/selenium_greed_firefox_rce_cve_2022_28108.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,7 @@
22

33
Selenium Server (Grid) before 4.7 allows CSRF because it permits non-JSON content types
44
such as application/x-www-form-urlencoded, multipart/form-data, and text/plain.
5+
The number of sessions must be fewer than maxSessions for the exploit to succeed.
56

67
The vulnerability affects:
78

0 commit comments

Comments
 (0)