Creatiwity wityCMS是一套基于PHP的面向模型-视图-控制器的轻量级内容管理系统(CMS)。 Creatiwity wityCMS 0.6.1版本中的‘General’菜单下的‘Settings’页面的‘Website's name’字段存在跨站脚本漏洞。远程攻击者可借助特制的网站名利用该漏洞注入任意的Web脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-10732 | Dataiku DSS REST API 安全漏洞 | |
| CVE-2018-11309 | WordPress MemberMouse SQL注入漏洞 | |
| CVE-2018-11430 | MyBB Moderator Log Notes插件跨站脚本漏洞 | |
| CVE-2018-11516 | VideoLAN VLC媒体播放器缓冲区错误漏洞 | |
| CVE-2018-11517 | mySCADA myPRO 安全漏洞 | |
| CVE-2018-11514 | PHP Scripts Mall Naukri Clone Script 安全漏洞 | |
| CVE-2018-11515 | WordPress wpForo插件SQL注入漏洞 | |
| CVE-2018-11508 | Linux kernel 安全漏洞 | |
| CVE-2018-11506 | Linux kernel 缓冲区错误漏洞 | |
| CVE-2018-11507 | Free Lossless Image Format 安全漏洞 |
No comments yet