cve/2023/CVE-2023-26912.md
2024-06-18 02:51:15 +02:00

18 lines
670 B
Markdown

### [CVE-2023-26912](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-26912)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Cross site scripting (XSS) vulnerability in xenv S-mall-ssm thru commit 3d9e77f7d80289a30f67aaba1ae73e375d33ef71 on Feb 17, 2020, allows local attackers to execute arbitrary code via the evaluate button.
### POC
#### Reference
- https://github.com/xenv/S-mall-ssm/issues/37
#### Github
No PoCs found on GitHub currently.