zcms 2.x 后台投稿处 存储型XSS和CSRF漏洞

Basic Fields

SSV ID:
SSV-90739
Find Time:
2014-10-21
Submit Time:
2016-02-15
Level:
Category:
跨站请求伪造
Component:
ZCMS
Author:
Unknown
Submitter:
kikay
CVE-ID:
Add
CNNVD-ID:
Add
CNVD-ID:
Add
ZoomEye Dork:
Add

Source

Login to see

Detail

Contributor kikay Got  4KB
Login to see
shanji hydra None have 4  exchange

PoC

Login to see

Reference Linking

Login to see

Solutions

Login to see
Popularity 3468
Need to bind phone before comment. Bind Now

Unavailable Comments

※Any content provided by this site, only to learn the code and services, not for illegal purposes