Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in a private message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jeesns 跨站脚本漏洞
Vulnerability Description
福州凌夕网络科技 JEESNS是中国福州凌夕网络科技公司的一款基于JAVA企业级平台研发的社交管理系统。依托企业级JAVA的高效、安全、稳定等优势,开创国内JAVA版开源SNS先河。数据库使用MYSQL,全部源代码开放。 Jeesns存在安全漏洞,该漏洞允许攻击者可利用该漏洞通过在私有消息中精心设计的有效负载执行任意的web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A