Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An unauthenticated Cross-Site Scripting (XSS) vulnerability found in Webkul QloApps 1.6.0 allows an attacker to obtain a user's session cookie and then impersonate that user via GET configure parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Webkul QloApps 跨站脚本漏洞
Vulnerability Description
Webkul QloApps是免费的开源酒店预订和在线预订系统。 Webkul QloApps 1.6.0版本存在安全漏洞,该漏洞源于存在跨站脚本 (XSS) 漏洞。攻击者可利用该漏洞获取用户的会话cookie,然后通过 GET configure参数模拟该用户。
CVSS Information
N/A
Vulnerability Type
N/A