Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Invision Power Board 2.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP POST request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Invision Power Board HTML注入漏洞
Vulnerability Description
Invision Power Board是一款流行的基于WEB的论坛程序。 Invision Power Board中存在HTML注入漏洞,起因是没有充分检查用户提供的数据。由于对HTML标记缺少过滤,攻击者可能通过HTTP POST请求注入IFRAME,进而展开跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A