Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft EPay Enterprise 3.0 (formerly DoPays) allow remote attackers to inject arbitrary web script or HTML via multiple unspecified parameters in (1) profile.htm, (2) card.htm, (3) bank.htm, (4) subscriptions.htm, (5) send.htm, (6) request.htm, (7) forgot.htm, (8) escrow.htm, (9) donations.htm, and (10) products.htm.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AlstraSoft EPay Enterprise多个HTML注入漏洞
Vulnerability Description
AlstraSoft EPay Enterprise 3.0 (之前的DoPays)存在多个跨站脚本攻击漏洞, 远程攻击者可以通过多个(1)profile.htm,(2)card.htm,(3)bank.htm,(4)subscriptions.htm,(5)send.htm,(6)request.htm, (7)forgot.htm,(8)escrow.htm,(9)donations.htm和(10)products.htm内的未明参数执行任意web代码或HTML。
CVSS Information
N/A
Vulnerability Type
N/A