Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists due to insufficient validation of SVG file uploads in the /admin/media.php component, allowing attackers to upload malicious SVG files containing JavaScript code that executes when the uploaded file is viewed.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Emlog Pro 安全漏洞
Vulnerability Description
Emlog Pro是Emlog开源的一个博客系统。 Emlog Pro 2.5.19版本存在安全漏洞,该漏洞源于对SVG文件上传验证不足,可能导致存储型跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A