Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ASPjar Guestbook 1.00 allows remote attackers to delete arbitrary messages accessing the delete.asp administrative script with certain cookie values set to "true".
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ASPJar Guestbook跨站脚本执行漏洞
Vulnerability Description
ASPJar Guestbook是一款简单的留言系统,可使用在多种Linux和Unix操作系统下。 ASPJar Guestbook对用户提交到留言版内容中的数据缺少正确充分的检查,可导致远程攻击者进行跨站脚本执行攻击。 当攻击者在留言版中输入信息时,PHPImageView没有过滤脚本代码和HTML标记,可导致攻击者提供包含恶意脚本代码的信息给留言版,当其他用户浏览此包含恶意代码的链接时,可导致代码在浏览用户的浏览器上被执行,使用户基于Cookie认证的信息泄露。 另外,存在漏洞攻击者可以无需验证直接访
CVSS Information
N/A
Vulnerability Type
N/A