Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

CVE-2014-7200

EPSS 3.24% · P87

Public Exploits 1

Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2014-7200

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cross-site scripting (XSS) vulnerability in pi1/class.tx_dmmjobcontrol_pi1.php in the JobControl (dmmjobcontrol) extension 2.14.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via the tx_dmmjobcontrol_pi1[search][keyword] parameter to jobs/.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
TYPO3 JobControl扩展跨站脚本漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
TYPO3是瑞士TYPO3协会维护的一套免费开源的内容管理系统(框架)(CMS/CMF)。JobControl(也称dmmjobcontrol)是其中的一个用于在网站中显示空缺职位的扩展插件。 TYPO3 JobControl(dmmjobcontrol)扩展2.14.0及之前版本的pi1/class.tx_dmmjobcontrol_pi1.php脚本中存在跨站脚本漏洞,该漏洞源于jobs/ URI没有充分过滤‘tx_dmmjobcontrol_pi1[search][keyword]’参数。远程攻击者
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2014-7200

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2014-7200

登录查看更多情报信息。

Vendor Advisories for CVE-2014-7200 (1)

Exploits & Public PoCs for CVE-2014-7200 (1)

Mailing List Discussions for CVE-2014-7200 (1)

Other References for CVE-2014-7200 (2)

Same Patch Batch · n/a · 2014-10-10 · 51 CVEs total

CVE-2014-2649HP Operations Manager 远程代码执行漏洞
CVE-2014-4661HP Records Manager 跨站脚本漏洞
CVE-2014-5351MIT Kerberos 5 信任管理问题漏洞
CVE-2014-6439Elasticsearch 跨站脚本漏洞
CVE-2014-7046Android George Wassouf应用程序加密问题漏洞
CVE-2014-7047Android Ocean Avenue Mobile Pro应用程序加密问题漏洞
CVE-2014-7226Rejetto HTTP File Server 代码注入漏洞
CVE-2014-5298X2Engine 权限许可和访问控制漏洞
CVE-2014-3201Google Chrome Blink 缓冲区溢出漏洞
CVE-2014-3147Splunk Enterprise 跨站脚本漏洞
CVE-2014-3403Cisco IOS XE 加密问题漏洞
CVE-2014-2648HP Operations Manager 远程代码执行漏洞
CVE-2014-2646HP Network Automation 权限许可和访问控制漏洞
CVE-2014-2638HP Sprinter 远程代码执行漏洞
CVE-2014-2637HP Sprinter 远程代码执行漏洞
CVE-2014-2636HP Sprinter 远程代码执行漏洞
CVE-2014-2635HP Sprinter 远程代码执行漏洞
CVE-2013-4488libgadu SSL Certificate Validation加密问题漏洞
CVE-2014-4874BMC Track-It! 信息泄露漏洞
CVE-2014-4873BMC Track-It! SQL注入漏洞

Showing top 20 of 51 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2014-7200

No comments yet


Leave a comment