Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
OURPHP thru 8.6.1 is vulnerable to Cross-Site Scripting (XSS) via the "Name" field of the "Complete Profile" functionality under the "My User Center" page, which can be accessed after registering through the front-end interface.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OURPHP 安全漏洞
Vulnerability Description
OURPHP是OURPHP开源的一个开源、跨平台、企业级+电商+小程序+APP多终端同步的CMS建站系统。 OURPHP 8.6.1及之前版本存在安全漏洞,该漏洞源于Name字段输入中和不当,可能导致跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A