标题:JustWriting 跨站脚本漏洞 (CVE-2021-41467) Description:JustWriting是一个简单的博客平台。 JustWriting 1.0.0 及以下版本存在跨站脚本漏洞,该漏洞允许远程攻击者通过challenge参数注入任意 Web 脚本或 HTML。
Description
A cross-site scripting vulnerability in application/controllers/dropbox.php in JustWriting 1.0.0 and below allow remote attackers to inject arbitrary web script or HTML via the challenge parameter.