Z-Downloads < 1.11.7 - Cross-Site Scripting (CVE-2024-8673)
收藏pentest-tools.com2025-03-26 收录
下载链接:
https://pentest-tools.com/vulnerabilities-exploits/undefined
下载链接
链接失效反馈官方服务:
资源简介:
The plugin does not properly validate uploaded files allowing for the uploading of SVGs containing malicious JavaScript.
该插件未能对上传的文件进行恰当的验证,导致恶意 JavaScript 代码封装的 SVG 文件得以上传。
提供机构:
pentest-tools.com



