Логотип exploitDog
bind:CVE-2023-31862
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-31862

Количество 2

Количество 2

nvd логотип

CVE-2023-31862

больше 2 лет назад

jizhicms v2.4.6 is vulnerable to Cross Site Scripting (XSS). The content of the article published in the front end is only filtered in the front end, without being filtered in the background, which allows attackers to publish an article containing malicious JavaScript scripts by modifying the request package.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-g4xp-6mr2-c9p8

больше 2 лет назад

jizhicms v2.4.6 is vulnerable to Cross Site Scripting (XSS). The content of the article published in the front end is only filtered in the front end, without being filtered in the background, which allows attackers to publish an article containing malicious JavaScript scripts by modifying the request package.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-31862

jizhicms v2.4.6 is vulnerable to Cross Site Scripting (XSS). The content of the article published in the front end is only filtered in the front end, without being filtered in the background, which allows attackers to publish an article containing malicious JavaScript scripts by modifying the request package.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-g4xp-6mr2-c9p8

jizhicms v2.4.6 is vulnerable to Cross Site Scripting (XSS). The content of the article published in the front end is only filtered in the front end, without being filtered in the background, which allows attackers to publish an article containing malicious JavaScript scripts by modifying the request package.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу