该漏洞允许远程攻击者在由 3xxx/engineercms 构建的网站上执行任意代码。 需要用户交互才能利用此漏洞,因为目标必须访问恶意页面。
This vulnerability allows remote attackers to execute arbitrary code on the website which builded by 3xxx/engineercms. User interaction is required to exploit this vulnerability in that the target must visit a malicious page .
说明 Instruction
接口存在xss漏洞。 one page has xss vulnerability
影响范围 Sphere of influence
该漏洞允许远程攻击者在由 3xxx/engineercms 构建的网站上执行任意代码。 需要用户交互才能利用此漏洞,因为目标必须访问恶意页面。 This vulnerability allows remote attackers to execute arbitrary code on the website which builded by 3xxx/engineercms. User interaction is required to exploit this vulnerability in that the target must visit a malicious page .