Cross site scripting (XSS) vulnerability in xenv S-mall-ssm thru commit 3d9e77f7d80289a30f67aaba1ae73e375d33ef71 on Feb 17, 2020, allows local attackers to execute arbitrary code via the evaluate button.
References
Link | Resource |
---|---|
https://github.com/xenv/S-mall-ssm/issues/37 | Exploit Issue Tracking Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-03-15 20:15
Updated : 2024-02-28 19:51
NVD link : CVE-2023-26912
Mitre link : CVE-2023-26912
CVE.ORG link : CVE-2023-26912
JSON object : View
Products Affected
s-mall-ssm_project
- s-mall-ssm
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')