FreeScripts VisitorBook LE (visitorbook.pl)不能正确逃避输入中的换行符,远程攻击者(1)当$mailuser是1的时候,可以使用VisitorBook作为开放邮件中继,(2)可以通过超过$max_posts变量的大量换行符导致留言簿数据库被删除。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2003-0980 | FreeScripts VisitorBook LE (visitorbook.pl)跨站脚本(XSS)漏洞 | |
| CVE-2003-0981 | FreeScripts VisitorBook LE 跨站脚本漏洞 | |
| CVE-2003-0982 | Cisco ACNS验证库远程缓冲区溢出漏洞 | |
| CVE-2003-0983 | IBM服务器漏洞 |
No comments yet