YunoHost 2.7.2 至 2.7.14——多个漏洞
bishopfox.com | 博客 | #vulnerability | #session-hijacking | #stored-xss | #yunohost | #http-header-injection | #cve-2018-11348
摘要
YunoHost 2.7.2 至 2.7.14 多个漏洞:用户资料页存储型 XSS(CVE-2018-11348)与 HTTP 头注入(CVE-2018-11347)可组合劫持会话、篡改响应头;公告发布时修复方案待定。
- 发布时间
- 收录时间
Skip to content