NethServer 7.3.1611 (Upload.json)...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### Description NethServer suffers from an authenticated stored XSS vulnerability. Input passed to the 'BackupConfig[Upload][Description]' POST parameter is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site. ### Vendor NethServer.org - https://www.nethserver.org ### Affected Version 7.3.1611-u1-x86_64 ### Tested On Kernel 3.10.0.-514.el7.x86_64 on an x86_64 CentOS Linux 7.3.1611 (Core)

0%
暂无可用Exp或PoC
当前有0条受影响产品信息