Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2023-30256 PoC — Webkil QloApps 跨站脚本漏洞

Source
Associated Vulnerability
Title:Webkil QloApps 跨站脚本漏洞 (CVE-2023-30256)
Description:Webkil QloApps是免费的开源酒店预订和在线预订系统。 Webkil QloApps v.1.5.2版本存在安全漏洞。攻击者利用该漏洞通过AuthController.php文件中的back和email_create参数获取敏感信息。
Description
Cross Site Scripting vulnerability found in Webkil QloApps v.1.5.2 allows a remote attacker to obtain sensitive information via the back and email_create parameters in the AuthController.php file.
File Snapshot

id: CVE-2023-30256 info: name: Webkul QloApps 1.5.2 - Cross-site Scripting author: theamanrawat ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.