Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

Cross Site Scripting (XSS) in LAOBANCMS v2.0 allows remote attackers to execute arbitrary code by injecting commands into the "Homepage Introduction" field of component "admin/info.php?shuyu".

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.