Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stored cross site scripting (XSS) vulnerability in /app/form_add/of S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the Title Entry text box.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
S-CMS 跨站脚本漏洞
Vulnerability Description
S-CMS是中国S-CMS公司的一套基于PHP和MySQL的内容管理系统(CMS)。 S-CMS PHP 中存在跨站脚本漏洞,该漏洞源于产品 /app/form_add/ 链接中的 Title 输入框缺少对用户数据的正确验证。攻击者可通过该漏洞执行客户端代码。 以下产品及版本受到影响:S-CMS PHP v3.0。
CVSS Information
N/A
Vulnerability Type
N/A