Subrion CMS是Subrion团队开发的一套基于PHP的内容管理系统(CMS)。该系统可被集成到网站,并支持多种扩展插件等。 Subrion CMS 4.2.1版本中的uploads/.htaccess存在跨站脚本漏洞,该漏洞源于程序没有阻止.html文件的上传。远程攻击者可利用该漏洞注入任意的Web脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-14835 | Subrion CMS 跨站脚本漏洞 | |
| CVE-2018-14836 | Subrion 访问控制错误漏洞 | |
| CVE-2018-14838 | rejucms 跨站脚本漏洞 | |
| CVE-2018-14847 | Winbox for MikroTik RouterOS 安全漏洞 | |
| CVE-2017-9118 | PHP 缓冲区错误漏洞 | |
| CVE-2017-9120 | PHP 数字错误漏洞 | |
| CVE-2018-7649 | Monitorix 跨站脚本漏洞 | |
| CVE-2018-14851 | PHP 缓冲区错误漏洞 | |
| CVE-2018-14858 | idreamsoft iCMS 安全漏洞 | |
| CVE-2017-6213 | paypal/invoice-sdk-php 跨站脚本漏洞 | |
| CVE-2017-6215 | paypal/permissions-sdk-php 跨站脚本漏洞 |
No comments yet