Joomla!是美国Open Source Matters团队开发的一套开源的内容管理系统(CMS),该系统提供RSS馈送、网站搜索等功能。Balbooa Gridbox extension是使用在其中的一个拖放式网站构建扩展。 Joomla! Balbooa Gridbox扩展2.4.0及之前版本中存在跨站脚本漏洞,该漏洞源于程序没有正确的验证用户提交的输入。远程攻击者可借助特制的URL利用该漏洞在用户的Web服务器上执行脚本,窃取基于cookie的用户身份验证凭证。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-12431 | SeaCMS 跨站脚本漏洞 | |
| CVE-2018-12432 | JavaMelody 跨站脚本漏洞 | |
| CVE-2018-12420 | IceHrm 安全漏洞 | |
| CVE-2018-12423 | Synapse 安全漏洞 | |
| CVE-2017-12070 | OPC UA .NET Stack and Sample Applications 安全漏洞 | |
| CVE-2018-11574 | PPPD 输入验证错误漏洞 | |
| CVE-2018-11689 | Samsung Web Viewer for Samsung DVR Smart Viewer 跨站脚本漏洞 | |
| CVE-2018-8819 | ALC WebCTRL 安全漏洞 | |
| CVE-2018-12421 | LTB Self Service Password 安全漏洞 | |
| CVE-2018-12114 | Maccms 跨站请求伪造漏洞 | |
| CVE-2018-10821 | BlackCatCMS 跨站脚本漏洞 | |
| CVE-2018-12418 | Junrar 安全漏洞 | |
| CVE-2018-8246 | Microsoft Excel 信息泄露漏洞 |
No comments yet