patch-1
Mohsen khashei 2022-06-01 15:16:23 +04:30
parent 7270d7eff1
commit b436cdc9e9
1 changed files with 2 additions and 1 deletions

View File

@ -6,7 +6,7 @@ info:
severity: medium
description: |
A cross-site scripting (XSS) issue in FUDForum 3.1.0 allows remote attackers to inject JavaScript
reference:
reference:
- https://www.exploit-db.com/exploits/49942
- https://nvd.nist.gov/vuln/detail/CVE-2021-27519
classification:
@ -30,6 +30,7 @@ requests:
part: body
words:
- x" onmouseover=alert(1) x=
- type: word
part: header
words: