Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Greasemonkey before 0.3.5 allows remote web servers to (1) read arbitrary files via a GET request to a file:// URL in the GM_xmlhttpRequest API function, (2) list installed scripts using GM_scripts, or obtain sensitive information via (3) GM_setValue and GM_getValue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Greasemonkey 多个远程信息泄露漏洞
Vulnerability Description
Greasemonkey 0.3.5之前的版本允许远程web服务器(1)借助于对在GM_xmlhttpRequest API函数中的文件://URL的GET请求读取任意的文件,(2)列出使用GM_scripts的已安装脚本,或(3)借助于GM_setValue和GM_getValue获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A