Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-14937

EPSS 0.24% · P46
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2018-14937

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The Add page option in my little forum 2.4.12 allows XSS via the Menu Link field.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
my little forum 跨站脚本漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
my little forum是一套基于PHP和MySQL的互联网论坛应用程序。该应用程序采用传统树状视图展示信息,并支持图片上传、模板引擎、BB代码和表情符号等。 my little forum 2.4.12版本中的Add page选项存在跨站脚本漏洞。远程攻击者可借助Menu Link字段利用该漏洞在用户浏览器中执行恶意的代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2018-14937

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-14937

登录查看更多情报信息。

Same Patch Batch · n/a · 2018-08-05 · 21 CVEs total

CVE-2018-14947PDF2JSON 安全漏洞
CVE-2018-14936my little forum 跨站脚本漏洞
CVE-2018-14938TCPFLOW 缓冲区错误漏洞
CVE-2018-14955SquirrelMail 跨站脚本漏洞
CVE-2018-14954SquirrelMail 跨站脚本漏洞
CVE-2018-14953SquirrelMail 跨站脚本漏洞
CVE-2018-14952SquirrelMail 跨站脚本漏洞
CVE-2018-14951SquirrelMail 跨站脚本漏洞
CVE-2018-14950SquirrelMail 跨站脚本漏洞
CVE-2018-14948dilawar sound 安全漏洞
CVE-2018-14958WeaselCMS 跨站请求伪造漏洞
CVE-2018-14946PDF2JSON 安全漏洞
CVE-2018-14945jpeg_encoder 缓冲区错误漏洞
CVE-2018-14944jpeg_encoder 安全漏洞
CVE-2018-14943Harmonic NSG 9000 安全漏洞
CVE-2018-14942Harmonic NSG 9000 安全漏洞
CVE-2018-14941Harmonic NSG 9000 安全漏洞
CVE-2018-14940PHPCMS 安全漏洞
CVE-2018-14939LibreOffice 安全漏洞
CVE-2018-14959WeaselCMS 跨站请求伪造漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2018-14937

No comments yet


Leave a comment