CVE-2023-39007: OPNsense – Cross-Site Scripting to RCE

CVE-2023-39007: OPNsense - Cross-Site Scripting to RCE-渗透云记 - 专注于网络安全与技术分享
CVE-2023-39007: OPNsense – Cross-Site Scripting to RCE
此内容为付费阅读,请付费后查看
100积分
付费阅读

漏洞标题

CVE-2023-39007: OPNsense – Cross-Site Scripting to rce

漏洞描述

There is a xss in /ui/cron/item/open in the Cron component of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 via openAction in app/controllers/OPNsense/Cron/ItemController.php.

PoC代码

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享