Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
OpenKM Community Edition 6.3.12 is vulnerable to stored cross-site scripting (XSS) in the user account creation interface. The Name field accepts script tags and the Email field is vulnerable when the POST request is modified to include encoded script tags, by passing frontend validation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OpenKM Community Edition 安全漏洞
Vulnerability Description
OpenKM Community Edition是西班牙OpenKM公司的一个文档管理系统。 OpenKM Community Edition 6.3.12版本存在安全漏洞,该漏洞源于用户账户创建界面中Name字段和Email字段前端验证不足,可能导致存储型跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A