Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the newsletter configuration feature in the backend module in the Direct Mail (direct_mail) extension 2.6.4 and earlier for TYPO3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
TYPO3 Direct Mail扩展backend模块跨站脚本漏洞
Vulnerability Description
TYPO3是一个专业级的网站开发与管理系统,以 PHP/MySQL为发展工具。TYPO3的Direct Mail (direct_mail) extension 2.6.4及其早期版本中backend模数中的时事通讯构造特征存在跨站脚本漏洞,远程验证用户可以借助未明向量注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A