OSV 1.4.0 · github-reviewed · 修改于 2021-03-13 03:56
发布时间
2021-03-13 05:34
GitHub 审查时间
2021-03-13 03:56
NVD 发布时间
2021-03-12 01:15
源文件
advisories/github-reviewed/2021/03/GHSA-79hv-pfx6-hhpj/GHSA-79hv-pfx6-hhpj.json
Cross-site scripting (XSS) in modules/content/admin/content.php in ImpressCMS profile 1.4.2 allows remote attackers to inject arbitrary web script or HTML parameters through the "Display Name" field.