Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot iSupport 1.8 allow remote attackers to inject arbitrary web script or HTML via (1) the suser parameter in support/rightbar.php, (2) the ticket_id parameter in support/open_tickets.php, and (3) the cons_page_title parameter in index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IDevSpot iSupport 多个跨站脚本攻击漏洞
Vulnerability Description
IDevSpot iSupport 1.8中存在多个跨站脚本攻击(XSS)漏洞,远程攻击者可以通过(1) support/rightbar.php中的suser参数、(2) support/open_tickets.php中的ticket_id参数和(3) index.php中的cons_page_title参数注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A