LimeSurvey(前称PHPSurveyor)是LimeSurvey团队的一套开源的在线问卷调查程序,它支持调查程序开发、调查问卷发布以及数据收集等功能。 LimeSurvey 3.21.1版本及之前版本存在跨站脚本漏洞,该漏洞允许具有正确权限的认证用户通过participant数据库中心页面上的属性参数ParticipantAttributeNamesDropdown注入任意web脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7774 | 7.3 HIGH | Prototype Pollution |
| CVE-2020-28687 | Code Projects Artworks Gallery 代码问题漏洞 | |
| CVE-2020-13958 | Apache OpenOffice 安全漏洞 | |
| CVE-2020-21665 | fastadmin SQL注入漏洞 | |
| CVE-2020-27553 | Basetech Ge-131 Bt-1837836 路径遍历漏洞 | |
| CVE-2020-27554 | Basetech Ge-131 Bt-1837836 安全漏洞 | |
| CVE-2020-27555 | Basetech Ge-131 Bt-1837836 安全漏洞 | |
| CVE-2020-27556 | Basetech Ge-131 Bt-1837836 安全漏洞 | |
| CVE-2020-27557 | Basetech Ge-131 Bt-1837836 安全漏洞 | |
| CVE-2020-27558 | Basetech Ge-131 Bt-1837836 授权问题漏洞 | |
| CVE-2020-25746 | Resourcexpress Qubi3 信息泄露漏洞 | |
| CVE-2020-26701 | Kaaproject Kaa IoT Platform 跨站脚本漏洞 | |
| CVE-2020-28688 | Code Projects Artworks Gallery 代码问题漏洞 | |
| CVE-2020-28647 | Progress Software MOVEit Transfer 跨站脚本漏洞 | |
| CVE-2020-27192 | Binarynights Forklift 代码注入漏洞 | |
| CVE-2020-15349 | Binarynights Forklift 安全漏洞 | |
| CVE-2020-10776 | Red Hat Keycloak 跨站脚本漏洞 | |
| CVE-2020-25705 | Linux kernel 安全特征问题漏洞 | |
| CVE-2020-14389 | Red Hat Single Sign-On 安全漏洞 | |
| CVE-2020-28129 | SourceCodester Gym Management System 跨站脚本漏洞 |
Showing top 20 of 39 CVEs. View all on vendor page → →
No comments yet