Cross site scripting (XSS) vulnerability in xenv S-mall-ssm thru commit 3d9e77f7d80289a30f67aaba1ae73e375d33ef71 on Feb 17, 2020, allows local attackers to execute arbitrary code via the evaluate button.
References
Link | Resource |
---|---|
https://github.com/xenv/S-mall-ssm/issues/37 | Exploit Issue Tracking Vendor Advisory |
Configurations
Information
Published : 2023-03-15 13:15
Updated : 2023-03-17 20:51
NVD link : CVE-2023-26912
Mitre link : CVE-2023-26912
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
s-mall-ssm_project
- s-mall-ssm