Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Zimplit CMS 3.0, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) file parameter in a load action to zimplit.php and (2) client parameter to English_manual_version_2.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zimplit CMS多个跨站脚本攻击漏洞
Vulnerability Description
Zimplit是一个非常简单的PHP开源CMS管理系统。 Zimplit CMS 3.0也可能在之前版本中存在多个跨站脚本攻击漏洞。远程攻击者可以借助(1)对zimplit.php文件的load操作中的file参数,以及(2)向English_manual_version_2.php文件传递的client参数注入任意web脚本或者HTML。
CVSS Information
N/A
Vulnerability Type
N/A