Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the rich text editor in Webwiz allows remote attackers to inject arbitrary web script or HTML via URL-encoded HTML composed of a frameset in which a frame has a SRC attribute pointing to a JavaScript document.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WebWiz Rich Text Editor Topics Page HTML注入漏洞
Vulnerability Description
Webwiz的所见即所得编辑器中存在跨站脚本攻击漏洞。远程攻击者可以借助由frameset元素组成的URL-encoded HTML,注入任意的web脚本或HTML。该框架包含有指向JavaScript文档的SRC属性。
CVSS Information
N/A
Vulnerability Type
N/A