Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in GForge 4.5 allow remote attackers to inject arbitrary web script or HTML via the (1) forum_id or (2) group_id parameter to forum.php, (3) project_task_id parameter to task.php, (4) id parameter to detail.php, (5) the text field on the search page, (6) group_id parameter to qrs.php, (7) form, (8) rows, (9) cols or (10) wrap parameter to notepad.php, or the login field on the login form.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gforge 多个跨站脚本漏洞
Vulnerability Description
GForge 4.5存在多个跨站脚本攻击(XSS)漏洞。这使得远程攻击者可以借助于参数(1)forum_id 或(2)group_id向forum.php中,借助于参数(3)project_task_id向task.php中,借助于参数 (4) id 向detail.php中,借助于(5)搜索页面中的文本字段以及参数(6)group_id 向qrs.php中,借助于参数 (7) form, (8) rows, (9) cols 或(10) wrap 向 notepad.php中,或登陆窗体中的登陆字段,
CVSS Information
N/A
Vulnerability Type
N/A