Visual CSS Style Editor < 7.5.4 - Cross-Site Scripting (CVE-2021-24934)
收藏pentest-tools.com2025-03-27 收录
下载链接:
https://pentest-tools.com/vulnerabilities-exploits/undefined
下载链接
链接失效反馈官方服务:
资源简介:
The plugin does not sanitise and escape the wyp_page_type parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting issue
插件在将wyp_page_type参数输出至管理页面之前未进行清理和转义,从而导致反射型跨站脚本攻击问题。
提供机构:
pentest-tools.com



