Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
NoneCMS v1.3 has a CSRF vulnerability in public/index.php/admin/nav/add.html, as demonstrated by adding a navigation column which can be injected with arbitrary web script or HTML via the name parameter to launch a stored XSS attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NoneCMS 跨站请求伪造漏洞
Vulnerability Description
NoneCMS是一套基于Thinkphp的内容管理系统(CMS)。 NoneCms 1.3.0版本存在安全漏洞。远程攻击者可通过添加导航栏证明触发存储性XSS攻击。
CVSS Information
N/A
Vulnerability Type
N/A