OSV 1.4.0 · github-reviewed · 修改于 2022-01-05 04:59
发布时间
2022-01-05 22:54
GitHub 审查时间
2022-01-05 04:59
NVD 发布时间
2021-12-16 06:15
源文件
advisories/github-reviewed/2022/01/GHSA-7mq6-cp5m-f4j5/GHSA-7mq6-cp5m-f4j5.json
Cross Site Scripting (XSS) vulnerability exits in Anchor CMS <=0.12.7 in posts.php. Attackers can use the posts column to upload the title and content containing malicious code to achieve the purpose of obtaining the administrator cookie, thereby achieving other malicious operations.