漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors to the (1) Projects, (2) Contacts, (3) Helpdesk, (4) Search (only Gecko engine driven Browsers), and (5) Notes modules; the (6) Mail summary page; and unspecified other files.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHProjekt 多个跨站脚本攻击漏洞
Vulnerability Description
PHProjekt 5.2.0中存在多个跨站脚本攻击漏洞。当magic_quotes_gpc被禁用时,远程认证用户可以借助提交到(1)Projects,(2)Contacts,(3)Helpdesk,(4)Search(仅限于Gecko引擎驱动浏览器),(5)Notes模块,(6)Mail summary页面和其他文件的未明向量,注入任意的web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A