QuickCMS是QuickCMS开源的一款内容管理系统。 QuickCMS存在跨站脚本漏洞,该漏洞源于不安全的基于HTTP的插件获取机制容易受到跨站脚本攻击,恶意攻击者可以通过冒充opensolution.org服务器并在插件列表端点提供任意HTML或JavaScript来执行中间人攻击,当用户访问插件页面时,恶意内容会被自动获取、渲染和执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| OpenSolution | QuickCMS | ≤ 6.8 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OpenSolution | QuickCMS | 0 ~ 6.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet