OneCMS Multiple SQL Injection and Cross Site Scripting Vulnerabilities
Description
Multiple vulnerabilities have been identified in OneCMS, which could be exploited by attackers to disclose sensitive information or inject SQL queries. These issues are caused by input validation errors in various modules, which could be exploited to conduct cross site scripting and SQL injection attacks.
Vulnerable Products
Vulnerable Software: OneCMS version 2.6.2 and prior