Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
nopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an attacker to inject the XSS payload in Schedule tasks and each time any user will go to that page of the website, the XSS triggers and attacker can able to steal the cookie according to the crafted payload.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
nopCommerce 跨站脚本漏洞
Vulnerability Description
nopCommerce是一套开源的通用电子商务平台。 nopCommerce Store 4.30 存在跨站脚本漏洞,攻击者可利用该漏洞可以根据精心制作的有效载荷窃取cookie。
CVSS Information
N/A
Vulnerability Type
N/A