YesWiki 4.6.7 之前的版本中,Bazar valeur 操作存在跨站脚本(XSS)漏洞,允许页面编辑者通过渲染从远程 URL 获取的未转义 HTML 来注入脚本。攻击者可以将 tools/bazar/actions/valeur.php 指向一个由他们控制的服务器,该服务器返回带有 img onerror 处理程序的 BAZ_fiche_titre 标记,从而在每个查看者的浏览器中执行恶意脚本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet