OroCommerce是Oro开源的一个开源的企业对企业商务应用程序。 OroCommerce 4.1.0 到4.1.17版本、4.2.0 到 4.2.11、以及 5.0.0 到 5.0.3版本存在跨站脚本 (XSS)漏洞,该漏洞源于易受运输规则编辑页面的 UPS 附加费字段中的跨站脚本攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| oroinc | orocommerce | >= 4.1.0, <= 4.1.17 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet