SPA-Cart eCommerce CMS是SPA-Cart公司的一个CMS系统。 SPA-Cart eCommerce CMS 1.9.0.3版本存在跨站脚本漏洞,该漏洞源于文件/search的参数filter[brandid]/filter[price]会导致跨站脚本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| SPA-Cart | eCommerce CMS | 1.9.0.3 |
affected |
1.9.1.4 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SPA-Cart | eCommerce CMS | 1.9.0.3 |
cpe:2.3:a:spa-cart:ecommerce_cms:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | A vulnerability was found in SPA-Cart eCommerce CMS 1.9.0.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /search. The manipulation of the argument filter[brandid]/filter[price] leads to cross site scripting. The attack may be launched remotely. VDB-238058 is the identifier assigned to this vulnerability. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-4547.yaml | POC Details |
No public POC found.
Login to generate AI POCNo comments yet