ImportDump是Miraheze开源的一款应用程序。 ImportDump存在安全漏洞,该漏洞源于如果另一个 wiki 上的用户恰好与本 wiki 上的某个用户具有相同的参与者 ID,则另一个 wiki 上的用户可以充当原始 wiki 请求者。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| miraheze | ImportDump | commits prior to 5c91dfc | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-47815 | 6.0 MEDIUM | Cross-site Scripting in IncidentReporting |
| CVE-2024-47812 | 6.0 MEDIUM | Cross-site Scripting (XSS) on Special:RequestImportQueue when displaying request date in I |
No comments yet