Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple stored cross-site scripting (XSS) vulnerabilities in Sage EasyPay 10.7.5.10 allow authenticated attackers to inject arbitrary web script or HTML via multiple parameters through Unicode Transformations (Best-fit Mapping), as demonstrated by the full-width variants of the less-than sign (%EF%BC%9C) and greater-than sign (%EF%BC%9E).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sage EasyPay 跨站脚本漏洞
Vulnerability Description
Sage EasyPay(Sage pay)是英国Sage pay的一款网上支付应用。 Sage EasyPay 10.7.5.10版本存在跨站脚本漏洞,攻击者可利用该漏洞通过Unicode转换(最佳匹配映射)通过多个参数注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A