CNNVD-202512-470 Information
Dec 04, 2025
cve
CNNVD ID
CNNVD-202512-470
Related CVE
- CNNVD Published: 2025-12-04
Description (Chinese)
WEBIGniter是WEBIGniter公司的一个内容管理系统。 WEBIGniter 28.7.23版本存在跨站脚本漏洞,该漏洞源于用户创建过程中存在跨站脚本漏洞,可能导致执行恶意JavaScript代码。
Description (English)
WEBIGniter is a WEBIGniter content management system. The WEBIGniter 28.7.23 version has a cross-site script loophole, which stems from a cross-site script gap in the user creation process, which may lead to the implementation of malicious JavaScript code.
Hazard Level
High
Vulnerability Type
跨站脚本
Affected Vendor
WEBIGniter
Published
2025-12-04
Last Modified
2026-02-24
References
https://webigniter.net/demo https://www.exploit-db.com/exploits/51900 https://www.vulncheck.com/advisories/webigniter-28723-cross-site-scripting-xss-in-user-creation-process https://access.redhat.com/security/cve/cve-2023-53735
Share on: