Discuz! 1_modcp_editpost.tpl.php xss bug

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

在文件1_modcp_editpost.tpl.php里代码: ..... <? } elseif($action == 'editmessage') { ?> <textarea type="text" id="message_<?=$pid?>" name="message_<?=$pid?>" style="width: 80%; height: 200px; overflow: visible" ondblclick="doane(event)"><?=$orig['message']?></textarea> <p style="margin: 5px; text-align: center;"> <button type="button" value="true" class="submit" onclick="submitmessage('<?=$pid?>');this.disabled=true">提交</button>   <button type="button" class="submit" onclick="ajaxget('modcp.php?action=editmessage&pid=<?=$pid?>&tid=<?=$tid?>&editmessagesubmit=yes&inajax=1&do=notupdate', 'postmessage_<?=$pid?>')">取消</button> </p> <script type="text/javascript"> ...... <?=$orig['message']?>没有过滤导致xss....

0%
暂无可用Exp或PoC
当前有0条受影响产品信息