Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in 107_plugins/content/content_manager.php in the Content Management plugin in e107 before 0.7.20, when the personal content manager is enabled, allows user-assisted remote authenticated users to inject arbitrary web script or HTML via the content_heading parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
e107脚本'content_manager.php' 跨站脚本攻击漏洞
Vulnerability Description
e107是使用MySQL后端数据库的基于PHP的内容管理系统,ePing和eTrace都是其中的工具插件。 e107 'Content Management'插件'107_plugins/content/content_manager.php'脚本存在跨站脚本攻击漏洞,当启动个人内容管理器时,用户辅助的远程认证用户可通过content_heading参数注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A