在 Mamunur Rashid 的 Classified Listing(classified-listing)插件中,存在网页生成过程中输入中和不当的问题,导致“跨站脚本攻击”(Cross-site Scripting, XSS)漏洞。该问题属于存储型跨站脚本攻击(Stored XSS)。受影响的 Classified Listing 版本范围为:从初始版本至 6.1.2。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Mamunur Rashid | Classified Listing | ≤ 6.1.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Mamunur Rashid | Classified Listing | 0 ~ 6.1.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet