Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2018-20367

Disclosure Date: December 22, 2018 (last updated November 27, 2024)
The "mall some commodity details: commodity consultation" component in WSTMart 2.0.8_181212 has stored XSS via the consultContent parameter, as demonstrated by the index.php/home/goodsconsult/add.html URI.
0
Attacker Value
Unknown

CVE-2018-19138

Disclosure Date: November 09, 2018 (last updated November 27, 2024)
WSTMart 2.0.7 has CSRF via the index.php/admin/staffs/add.html URI.
0