PT-2026-7907 · Unknown · Lty628 Aidigu

CVE-2025-70845

·

Publicado

2026-02-12

·

Atualizado

2026-02-12

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions lty628 aidigu version 1.9.1
Description The software contains a Cross Site Scripting (XSS) issue in the '/setting/' page. The "intro" field is not properly sanitized or escaped, allowing for potential exploitation. The vulnerable parameter is intro.
Recommendations Ensure proper sanitization and escaping of the "intro" field in the '/setting/' page.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-70845

Produtos afetados

Lty628 Aidigu