Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in LiveJournal 1.0 and 1.1 allows remote attackers to execute Javascript as other users via the stylesheet, which does not strip the semicolon or parentheses, as demonstrated using a background:url.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LiveJournal HTML注入漏洞
Vulnerability Description
LiveJournal 1.0和1.1版本存在跨站脚本攻击(XSS)漏洞。远程攻击者可以借助样式表以其他用户身份执行Javascript,该样式表不包含分号或者圆括号,示例:使用一个background:url。
CVSS Information
N/A
Vulnerability Type
N/A