Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
HTML injection in multiple Botble products
Vulnerability Description
HTML injection vulnerability in multiple Botble products such as TransP, Athena, Martfury, and Homzen, consisting of an HTML injection due to a lack of proper validation of user input by sending a request to '/search' using the 'q' parameter.
CVSS Information
N/A
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Botble多款产品 跨站脚本漏洞
Vulnerability Description
Botble TransP等都是越南Botble公司的产品。Botble TransP是一款针对物流、快递和货运管理的系统。Botble Athena是一个内容管理平台。Botble Martfury是一个多商户电子商务系统。 Botble多款产品存在跨站脚本漏洞,该漏洞源于对用户输入验证不足,可能导致HTML注入。以下产品受到影响:TransP、Athena、Martfury和Homzen。
CVSS Information
N/A
Vulnerability Type
N/A