Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-46467: [CVE-2023-46467] There's an Stored XSS vulnerability in Juzaweb CMS

Cross Site Scripting vulnerability in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted payload to the username parameter of the registration page.

CVE
#sql#xss#vulnerability#web#git

首页 › web安全 › [CVE-2023-46467] There’s an Stored XSS vulnerability in Juzaweb CMS

2023-10-19 15:22

56 0

CVE ID

CVE-2023-46467

GitHub

https://github.com/juzaweb/cms

Influenced Version

<= v3.4

Vulnerability Type

Cross Site Scripting(XSS)

Description

Cross Site Scripting vulnerability in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted payload to the username parameter of the registration page.

http://ip/register:

http://ip/admin-cp:

相关文章

评论 (暂无评论)

发表评论

Sumor 菜到不能肤吸。

36文章 10评论 2栏目

热门文章

kali内网攻击-mitmf

2 评论

msfvenom后门生成与利用

1 评论

CVE-2019-9762 SQL注入

1 评论

黑客丛林之旅通关攻略

1 评论

记一次PhotoGrapher靶机渗透

1 评论

更多

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907