Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Serendipity多个输入验证漏洞
Vulnerability Description
Serendipity 0.7 beta1和可能0.7-beta3以前其他版本的Comment.php存在跨站脚本(XSS)漏洞。远程攻击者借助(1)邮件或者(2)用户名字段注入任意的HTML和PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A