Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in index.cfm in Blue River Interactive Group Sava CMS before 5.0.122 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Blueriver Sava CMS 'index.cfm'跨站脚本攻击漏洞
Vulnerability Description
Sava CMS是Blue River Interactive Group 开发的一款开放源码的内容管理系统(CMS)。 Blue River Interactive Group Sava CMS 5.0.122版本之前的版本的index.cfm中存在跨站脚本攻击漏洞。远程攻击者可以借助一个搜索操作中的关键词参数,注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A