漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists in the email template configuration component located at /admin/setting.php?action=mail, which allows administrators to input HTML code that is not properly sanitized, leading to persistent JavaScript execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Emlog Pro 安全漏洞
Vulnerability Description
Emlog Pro是Emlog开源的一个博客系统。 Emlog Pro 2.5.19版本存在安全漏洞,该漏洞源于邮件模板配置组件未正确清理HTML代码,可能导致存储型跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A