Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Smart-Shop allow remote attackers to inject arbitrary web script or HTML via (1) the email parameter to index.php; or the command parameter to index.php in (2) the default action for the home page, (3) a currencies action, or (4) a basket action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SMART-SHOP 多个跨站脚本攻击漏洞
Vulnerability Description
Smart-Shop中存在多个跨站脚本攻击漏洞。远程攻击者可以借助(1)对index.php的email;或(2) 主页的默认操作的index.php的指令参数, (3) 一个currencies操作,或(4)一个basket操作,注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A