Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Vt-Forum Lite 1.3 and 1.5 allow remote attackers to inject arbitrary web script or HTML via (1) the StrMes parameter in vf_info.asp and possibly (2) a URL in the SRC attribute of an IFRAME element that is submitted to vf_newtopic.asp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Vt-Forum Lite多个跨站脚本攻击漏洞
Vulnerability Description
Vt-Forum Lite 1.3和1.5存在多个跨站脚本攻击(XSS)漏洞,远程攻击者可以通过(1)在vf_info.asp内的StrMes参数并可能(2)在提交给vf_newtopic.asp的IFRAME元素内的SRC属性中的URL,注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A