Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in modules.php in PowerPortal 1.x allows remote attackers to inject arbitrary script or HTML via the (1) id parameter to the (a) private_messages module; (2) search parameter to the (b) links and (c) content modules; and (3) files parameter to the gallery module.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PowerPortal modules.php跨站脚本攻击漏洞
Vulnerability Description
PowerPortal 1.x版本的modules.php中存在跨站脚本攻击漏洞。远程攻击者可借助private_messages模块的id参数;links和content模块的search参数;以及gallery模块的files参数注入任意脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A