Bugzilla 2.17.4之前的2.16.x版本和2.17.4之前的2.17.x版本存在多个跨站脚本(XSS)漏洞。远程攻击者可以借助(1)多个默认德语和俄语HTML模板或(2)本地从属图GraphViz图形生成功能中AREA标签的ALT和NAME属性插入任意HTML或web脚本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2003-0511 | Cisco AP1x00 HTTP GET请求远程拒绝服务攻击漏洞 | |
| CVE-2003-0512 | Cisco Aironet Telnet服务用户帐号列举漏洞 | |
| CVE-2003-0603 | Bugzilla不安全临时文件处理漏洞 | |
| CVE-2003-0604 | Windows Media Player (WMP)运行Internet Explorer和处理HTML Microsoft产品漏洞 | |
| CVE-2003-0605 | Microsoft Windows 2000 DCOM RPC接口拒绝服务及权限提升漏洞(MS03-039) |
No comments yet