Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting vulnerability in Dynamic Guestbook 3.0 allows remote attackers to execute code in clients who access guestbook pages via the parameters (1) name, (2) mail, or (3) kommentar.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dynamic Guestbook存在跨站脚本执行漏洞
Vulnerability Description
Dynamic Guestbook是一款基于WEB的客户留言版程序,可使用在Linux,unix或者Microsoft windows操作平台下。 Dynamic Guestbook在处理用户提交的内容上过滤不充分,可导致跨站脚本执行漏洞。 Dynamic Guestbook没有在任意表单域充分检查用户输入的内容,如HTML标记等,攻击者可插入任意脚本代码到表单,由Guestbook生成后,当其他用户浏览这个留言时就可以导致脚本在用户浏览器上执行,可能使基于Cookie认证的信息被泄露。 问题存在与如下代
CVSS Information
N/A
Vulnerability Type
N/A