Title:Web Port 跨站脚本漏洞 (CVE-2019-12461) Description:Web Port是一套基于Web的SCADA(数据采集与监控系统)和HMI(人机界面)系统。 Web Port 1.19.1版本中存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者可利用该漏洞执行客户端代码。
Description
Web Port 1.19.1 is vulnerable to cross-site scripting via the /log type parameter.
1. It is advised to access via the original source first.2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.