Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Multiple stored XSS vulnerabilities in rpcms 3.5.5 #7

Closed
SecBridge opened this issue Dec 7, 2023 · 1 comment
Closed

Multiple stored XSS vulnerabilities in rpcms 3.5.5 #7

SecBridge opened this issue Dec 7, 2023 · 1 comment
Labels
bug Something isn't working

Comments

@SecBridge
Copy link

1、"设置"->"基本设置"->"统计代码":
image
image
2、"导航":
image
image
3、“文章”->"超链接“:
image
Change the burpsutie packet capture, remove http://, and encode the HTML entity in front of alert():
payload: javascript%26%23x3a%3Balert(document.cookie)
image
image

@ralap-z
Copy link
Owner

ralap-z commented Mar 2, 2024

Thank you very much for providing feedback on the vulnerability. It has been fixed in the form of a plugin(https://app.rpcms.cn/app/157.html)
Thank you again

@ralap-z ralap-z closed this as completed Mar 2, 2024
@ralap-z ralap-z added the bug Something isn't working label Apr 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

2 participants