Skip to content

QDSAY cms has multiple stored XSS vulnerabilities #4

@liao10086

Description

@liao10086

test:
xss

url: http://localhost/backend/catalog/save/article parameter:name
url:http://localhost/backend/assist/add parameter:title、aliases
url:http://localhost/backend/setup/add parameter:item、alias、content

I hope you can fix this vulnerabilitie
author:xijun.liao@dbappsecurity.com.cn

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions