Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
YUNUCMS 1.1.8 has XSS in app/admin/controller/System.php because crafted data can be written to the sys.php file, as demonstrated by site_title in an admin/system/basic POST request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
YUNUCMS 跨站脚本漏洞
Vulnerability Description
YUNUCMS是中国云优(YUNU)网络科技公司的一套开源的企业建站内容管理系统(CMS)。 YUNUCMS 1.1.8版本中的app/admin/controller/System.php文件存在跨站脚本漏洞。远程攻击者可通过向sys.php文件写入特制的数据利用该漏洞注入任意的Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A