云虫漏洞库

CVE-2026-40126 - OutSystems Service Center is vulnerable to a DOM-based Cross-Site Scripting (XSS) attack that can be exploited by a low-privileged attacker via the upload of a file with a malicious filename containing JavaScript code. The vulnerability exists in all locations where a file can be attached and prepared for upload to the server. This issue was fixed in OutSystems Service Center version 11.41.2 - 漏洞详情

漏洞编号:CVE-2026-40126

风险等级:未知

漏洞来源:CVE

CVE 编号:CVE-2026-40126

CNNVD 编号:-

厂商/产品:- / -

影响范围:-

CWE:CWE-79

发布/更新时间:2026-08-17 / 2026-08-28

漏洞描述

OutSystems Service Center is vulnerable to a DOM-based Cross-Site Scripting (XSS) attack that can be exploited by a low-privileged attacker via the upload of a file with a malicious filename containing JavaScript code. The vulnerability exists in all locations where a file can be attached and prepared for upload to the server.

This issue was fixed in OutSystems Service Center version 11.41.2

相关链接

相关漏洞

« 返回首页