Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-40542 PoC — Open Solutions For Education OpenSis-Classic 跨站脚本漏洞

Source
Associated Vulnerability
Title:Open Solutions For Education OpenSis-Classic 跨站脚本漏洞 (CVE-2021-40542)
Description:Open Solutions For Education OpenSis-Classic是美国Open Solutions For Education公司的一个开源的商业级、安全、可扩展和直观的学生信息系统、学校管理软件。 Open Solutions For Education Opensis-Classic 存在跨站脚本漏洞,该漏洞源于 Opensis-Classic 8.0 版受跨站脚本 (XSS) 影响。 未经身份验证的用户可以通过 Ajax_url_encode.php 中的 link_url
Description
Opensis-Classic Version 8.0 is affected by cross-site scripting. An unauthenticated user can inject and execute JavaScript code through the link_url parameter in Ajax_url_encode.php.
File Snapshot

id: CVE-2021-40542 info: name: Opensis-Classic 8.0 - Cross-Site Scripting author: alph4byt3 s ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.