Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Direct static code injection vulnerability in editcss.php in Gravity Board X (GBX) 1.1 allows remote attackers to execute arbitrary PHP code, HTML, and script via the csscontent parameter, which is directly inserted into the gbxfinal.css file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gravity Board X 'editcss.php' 静态代码注入漏洞
Vulnerability Description
Gravity Board X (GBX) 1.1中的editcss.php页面存在直接静态代码注入漏洞。这使得远程攻击者可以借助于csscontent参数直接执行任意PHP代码、HTML或脚本(直接插入到gbxfinal.css文件中)。
CVSS Information
N/A
Vulnerability Type
N/A