Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
DBHcms v1.2.0 has a stored xss vulnerability as there is no htmlspecialchars function for 'menu_description' variable in dbhcms\mod\mod.menus.edit.php line 83 and in dbhcms\mod\mod.menus.view.php line 111, A remote authenticated with admin user can exploit this vulnerability to hijack other users.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DBHcms 跨站脚本漏洞
Vulnerability Description
DBH cms 是一个开源的内容管理系统。该平台适用于个人和小型商业网站,易使用,支持多种语言和模板驱动布局 DBHcms v1.2.0版本中存在xss漏洞,该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者利用该漏洞执行客户端代码。
CVSS Information
N/A
Vulnerability Type
N/A