漏洞信息详情
Care2x Hospital Information Management 跨站脚本漏洞
漏洞简介
Care2x Hospital Information Management是一个开源信息管理系统。
Care2x Hospital Information Management 2.7 Alpha 版本存在安全漏洞,该漏洞源于/modules/registrationu admission/patientu register.php页面中发现POST请求,其中包含“nameu middle”、“addru str”、“station”、“nameu maiden”、“nameu 2”、“nameu 3”参数
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://securityforeveryone.com/blog/care2x-hospital-information-management-system-0-day-vulnerability-cve-2021-36352
参考网址
来源:MISC
链接:https://securityforeveryone.com/blog/care2x-hospital-information-management-system-0-day-vulnerability-cve-2021-36352
来源:MISC
链接:https://www.exploit-db.com/exploits/50197
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2021-36352
受影响实体
暂无
补丁
- Care2x Hospital Information Management 跨站脚本漏洞的修复措施<!--2021-8-26-->
还没有评论,来说两句吧...