CNNVD-202601-4337 Information
Jan 26, 2026
cve
CNNVD ID
CNNVD-202601-4337
Related CVE
- CNNVD Published: 2026-01-26
Description (Chinese)
Books_Manager是iJason-Liu个人开发者的一个图书管理系统。 Books_Manager存在代码注入漏洞,该漏洞源于对文件controllers/books_center/add_book_check.php中参数mark的错误操作,可能导致跨站脚本攻击。
Description (English)
Books Manager is a library management system for iJason-Liu personal developers. Books Manager has a code-infusion loophole, which stems from an error in the use of the parameter mark in document controlrs/books center/add book check.php, which may result in a cross-site script attack.
Hazard Level
Critical
Vulnerability Type
代码注入
Affected Vendor
个人开发者
Published
2026-01-26
Last Modified
2026-02-24
References
https://blog.y1fan.work/2026/01/13/%E5%AD%98%E5%82%A8%E5%9E%8Bxss/ https://vuldb.com/?ctiid.342873 https://vuldb.com/?id.342873 https://vuldb.com/?submit.736968
Share on: