漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the userranks feature in modules/system/admin.php in ImpressCMS 1.0.2 final allows remote attackers to inject arbitrary web script or HTML via the rank_title parameter. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ImpressCMS 'modules/system/admin.php'跨站脚本攻击漏洞
Vulnerability Description
ImpressCMS是一个数据库(MySQL)驱动,模块化的内容管理系统。 ImpressCMS 1.0.2最终版的modules/system/admin.php的userranks特性中存在跨站脚本攻击漏洞。远程攻击者可以借助rank_title参数,注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A