Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in baserCMS before 4.1.4. In the Register New Category feature of the Upload menu, the category name can be used for XSS via the data[UploaderCategory][name] parameter to an admin/uploader/uploader_categories/edit URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
baserCMS Register New Category功能跨站脚本漏洞
Vulnerability Description
baserCMS是一套企业级内容管理系统(CMS)。 baserCMS 4.1.4之前的版本中的Upload菜单的Register New Category功能存在跨站脚本漏洞。远程攻击者可借助‘data[UploaderCategory][name]’参数利用该漏洞执行任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A