Six Apart Movable Type是美国Six Apart公司的一个应用系统。提供包含多用户,评论,引用(TrackBack),主题等功能。 Six Apart Movable Type 8.4.2之前版本存在跨站脚本漏洞,该漏洞源于存在存储型跨站脚本漏洞,攻击者可以在已登录用户的Web浏览器上执行任意脚本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Six Apart Ltd. | Movable Type (8.4.x series) | 8.4.1 and earlier | - |
|
| Six Apart Ltd. | Movable Type (8.0.x series) | 8.0.5 and earlier | - |
|
| Six Apart Ltd. | Movable Type Advanced (8.4.x series) | 8.4.1 and earlier | - |
|
| Six Apart Ltd. | Movable Type Advanced (8.0.x series) | 8.0.5 and earlier | - |
|
| Six Apart Ltd. | Movable Type Premium (2.x series) | 2.06 and earlier | - |
|
| Six Apart Ltd. | Movable Type Premium (Advanced Edition) (2.x series) | 2.06 and earlier | - |
|
| Six Apart Ltd. | Movable Type Cloud Edition (8.x series) | 8.4.1 and earlier | - |
|
| Six Apart Ltd. | Movable Type Premium Cloud Edition (2.x series) | 2.06 and earlier | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-22888 | Six Apart Movable Type 跨站脚本漏洞 | |
| CVE-2025-25054 | Six Apart Movable Type 跨站脚本漏洞 |
No comments yet