Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A cross-site scripting (XSS) vulnerability exists in the search-autootaxi.php endpoint of the ATSMS web application. The application fails to properly sanitize user input submitted through a form field, allowing an attacker to inject arbitrary JavaScript code. The malicious payload is stored in the backend and executed when a user or administrator accesses the affected report page. This allows attackers to exfiltrate session cookies, hijack user sessions, and perform unauthorized actions in the context of the victims browser.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPGurukul Auto Taxi Stand Management System 安全漏洞
Vulnerability Description
PHPGurukul Auto Taxi Stand Management System是PHPGurukul公司的一个汽车出租车站管理系统。 PHPGurukul Auto Taxi Stand Management System存在安全漏洞,该漏洞源于未正确清理用户输入,可能导致跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A