Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in textarea/index.php in Textpattern (aka Txp CMS) 4.0.6 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the Body parameter in an article action. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Textpattern 'index.php' 跨站脚本攻击漏洞
Vulnerability Description
textpattern是一个灵活性强,精练的,易于使用的内容管理系统。 Textpattern (又称Txp CMS) 4.0.6 及其早期版本的textarea/index.php中存在跨站脚本攻击漏洞。远程验证用户可以借助一个项目操作中的Body参数,注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A