CVE-2025-34141: ETQ Reliance – Reflected XSS via SQLConverterServlet

CVE-2025-34141: ETQ Reliance - Reflected XSS via SQLConverterServlet-渗透云记 - 专注于网络安全与技术分享
CVE-2025-34141: ETQ Reliance – Reflected XSS via SQLConverterServlet
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2025-34141: ETQ ReliaNCe – Reflected xss via SQLConverterServlet

漏洞描述

A reflected cross-site scripting (XSS) vulnerability exists in ETQ Reliance CG (legacy) platform within the SQLConverterServlet component. This vulnerability requires user interaction, such as clicking a crafted link, and may result in execution of unauthorized scripts in the user's context. The affected servlet was unnecessarily exposed to authenticated users and has since been disabled in version SE.2025.1.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享